High severity7.0NVD Advisory· Published Mar 22, 2026· Updated Apr 30, 2026
CVE-2026-4546
CVE-2026-4546
Description
A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextShaping.dll. Executing a manipulation can lead to uncontrolled search path. The attack is restricted to local execution. The attack requires a high level of complexity. The exploitability is said to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
1- cpe:2.3:a:flos-freeware:notepad2:4.2.25:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- vuldb.comnvdExploitThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- drive.google.com/file/d/1w5-ztNIN28mPuidtjlsilKsKKQQNOiIJ/viewnvdPermissions Required
- vuldb.comnvdPermissions Required
News mentions
0No linked articles in our index yet.