High severity7.8NVD Advisory· Published Sep 28, 2022· Updated Jun 17, 2026
CVE-2022-32168
CVE-2022-32168
Description
Notepad++ versions 8.4.1 and before are vulnerable to DLL hijacking where an attacker can replace the vulnerable dll (UxTheme.dll) with his own dll and run arbitrary code in the context of Notepad++.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3v8.3+ 2 more
- (no CPE)range: v8.3
- cpe:2.3:a:notepad-plus-plus:notepad\+\+:*:*:*:*:*:*:*:*range: >=8.3,<8.4.5
- (no CPE)range: <=8.4.1
Patches
Vulnerability mechanics
References
2- github.com/notepad-plus-plus/notepad-plus-plus/commit/85d7215d9b3e0d5a8433fc31aec4f2966821051envdPatchThird Party Advisory
- www.mend.io/vulnerability-database/CVE-2022-32168nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.