Back

HIGH

Flos Freeware Notepad2 TextShaping.dll uncontrolled search path

Published Mar 22, 2026

Description

A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextShaping.dll. Executing a manipulation can lead to uncontrolled search path. The attack is restricted to local execution. The attack requires a high level of complexity. The exploitability is said to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (2)

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Mar 22, 2026
Updated Mar 23, 2026
Reserved Mar 21, 2026
CISA Vulnrichment
Updated Mar 23, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner VulDB
Published Mar 22, 2026
Updated Mar 23, 2026
Exploited since n/a
EUVD-2026-14303