Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c87r-r9gf-jq2q

Опубликовано: 22 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.3
CVSS3: 7

Описание

A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextShaping.dll. Executing a manipulation can lead to uncontrolled search path. The attack is restricted to local execution. The attack requires a high level of complexity. The exploitability is said to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.

A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextShaping.dll. Executing a manipulation can lead to uncontrolled search path. The attack is restricted to local execution. The attack requires a high level of complexity. The exploitability is said to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 2%
0.00012
Низкий

7.3 High

CVSS4

7 High

CVSS3

Дефекты

CWE-426

Связанные уязвимости

CVSS3: 7
nvd
18 дней назад

A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextShaping.dll. Executing a manipulation can lead to uncontrolled search path. The attack is restricted to local execution. The attack requires a high level of complexity. The exploitability is said to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 2%
0.00012
Низкий

7.3 High

CVSS4

7 High

CVSS3

Дефекты

CWE-426