CVE-2019-25560: Lyricvideocreator Lyric Video Creator

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Lyric Video Creator 2.1 contains a denial of service vulnerability that allows attackers to crash the application by processing malformed MP3 files. Attackers can create a crafted MP3 file with an oversized buffer and trigger the crash by opening the file through the Browse song functionality.

Affected products

Published 2026-03-21. Last modified 2026-06-17.