DLL Hijacking Vulnerability in LINE for Windows by LINE Corporation
CVE-2026-13133

8.4HIGH

Key Information:

Vendor
CVE Published:
10 August 2026

What is CVE-2026-13133?

A security weakness has been discovered in LINE for Windows that allows for DLL hijacking due to the improper loading of Msftedit.dll via a relative path. This vulnerability occurs when the application fails to enforce a secure DLL search path, allowing an attacker to place a malicious DLL in the installation directory. When the application is executed, it may inadvertently load the compromised DLL instead of the legitimate version from the System32 directory, potentially leading to unauthorized actions on the system.

Affected Version(s)

LINE for Windows 26.4.0

References

CVSS V4

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.