LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-4545

flos-freeware · notepad2

Published
CVSS7
Severityhigh
WeaknessCWE-426
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

A security flaw has been discovered in Flos Freeware Notepad2 4.2.25. This affects an unknown function in the library PROPSYS.dll. Performing a manipulation results in uncontrolled search path. The attack is only possible with local access. The attack is considered to have high complexity. The exploitability is reported as difficult. The vendor was contacted early about this disclosure but did not respond in any way.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-4545

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-4545.