PT-2026-26976 · Flos+1 · Notepad2+1

Haehanse

+1

·

Published

2026-03-22

·

Updated

2026-04-30

·

CVE-2026-4545

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Flos Freeware Notepad2 version 4.2.25
Description A security flaw exists in Flos Freeware Notepad2 that involves an uncontrolled search path within the PROPSYS.dll library. Exploitation requires local access and is considered difficult. The issue involves manipulation of an unknown function within the library. The vendor was contacted regarding this disclosure but did not respond.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Uncontrolled Search Path Element

Untrusted Search Path

Weakness Enumeration

Related Identifiers

CVE-2026-4545

Affected Products

Notepad2
Propsys.Dll