Vulnerabilities > Untrusted Search Path

DATE CVE VULNERABILITY TITLE RISK
2025-03-11 CVE-2025-27167 Illustrator versions 29.2.1, 28.7.4 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute their own programs, access unauthorized data files, or modify configuration in unexpected ways.
local
low complexity
CWE-426
7.8
2025-01-27 CVE-2025-0732 A vulnerability, which was classified as problematic, has been found in Discord up to 1.0.9177 on Windows.
local
high complexity
CWE-426
4.5
2025-01-27 CVE-2025-0733 A vulnerability, which was classified as problematic, was found in Postman up to 11.20 on Windows.
local
high complexity
CWE-426
4.5
2025-01-24 CVE-2025-0707 A vulnerability was found in Rise Group Rise Mode Temp CPU 2.1.
local
low complexity
CWE-426
7.8
2025-01-20 CVE-2024-13524 A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic.
local
high complexity
CWE-426
4.5
2025-01-19 CVE-2025-0567 A vulnerability classified as problematic was found in Epic Games Launcher up to 17.2.1.
local
high complexity
CWE-426
4.5
2025-01-15 CVE-2024-53407 Untrusted Search Path vulnerability in Phiewer 4.1.0
In Phiewer 4.1.0, a dylib injection leads to Command Execution which allow attackers to inject dylib file potentially leading to remote control and unauthorized access to sensitive user data.
local
low complexity
phiewer CWE-426
3.3
2025-01-15 CVE-2024-55503 Untrusted Search Path vulnerability in Termius
An issue in termius before v.9.9.0 allows a local attacker to execute arbitrary code via a crafted script to the DYLD_INSERT_LIBRARIES component.
local
low complexity
termius CWE-426
3.3
2025-01-15 CVE-2020-8094 Untrusted Search Path vulnerability in Bitdefender Antivirus 2020 1.0.15.138
An untrusted search path vulnerability in testinitsigs.exe as used in Bitdefender Antivirus Free 2020 allows a low-privilege attacker to execute code as SYSTEM via a specially crafted DLL file.
local
low complexity
bitdefender CWE-426
7.8
2024-11-12 CVE-2024-49515 Untrusted Search Path vulnerability in Adobe Substance 3D Painter
Substance3D - Painter versions 10.1.0 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code.
local
low complexity
adobe CWE-426
7.8