VYPR
Vendor

Notepad Plus Plus

Products
1
CVEs
33
Across products
33
Status
Private

Products

1

Recent CVEs

33
View all 33 CVEs →
  • CVE-2025-56383HigSep 26, 2025
    risk 0.55cvss 8.4epss 0.00

    Notepad++ v8.8.3 has a DLL hijacking vulnerability, which can replace the original DLL file to execute malicious code. NOTE: this is disputed by multiple parties because the behavior only occurs when a user installs the product into a directory tree that allows write access by…

  • CVE-2023-47452HigNov 30, 2023
    risk 0.51cvss 7.8epss 0.01

    An Untrusted search path vulnerability in notepad++ 6.5 allows local users to gain escalated privileges through the msimg32.dll file in the current working directory.

  • CVE-2023-40031HigAug 25, 2023
    risk 0.51cvss 7.8epss 0.01

    Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer write overflow in `Utf8_16_Read::convert`. This issue may lead to arbitrary code execution. As of time of publication, no known patches are available in existing…

  • CVE-2026-85279HigSep 22, 2026
    risk 0.49cvss 8.6epss 0.00

    Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in PluginsManager::loadPluginFromPath in PowerEditor/src/MISC/PluginsManager/PluginsManager.cpp because the plugin-supplied GetLexerCount() result controls a loop…

  • CVE-2026-25926HigFeb 19, 2026
    risk 0.47cvss 7.3epss 0.00

    Notepad++ is a free and open-source source code editor. An Unsafe Search Path vulnerability (CWE-426) exists in versions prior to 8.9.2 when launching Windows Explorer without an absolute executable path. This may allow execution of a malicious explorer.exe if an attacker can…

  • CVE-2019-16294HigSep 14, 2019
    risk 0.47cvss 7.8epss 0.10

    SciLexer.dll in Scintilla in Notepad++ (x64) before 7.7 allows remote code execution or denial of service via Unicode characters in a crafted .ml file.

  • CVE-2026-57233HigAug 17, 2026
    risk 0.46cvss 8.1epss 0.01

    Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the WinGup decompress function joins untrusted ZIP entry names to unzipDestTo without canonical containment validation, allowing an entry such as ../mimeTools/mimeTools.dll to overwrite a DLL in a sibling…

  • CVE-2026-86054HigSep 22, 2026
    risk 0.44cvss 7.8epss 0.00

    Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in NppParameters::writeSession in PowerEditor/src/Parameters.cpp because it copies a session path derived from -settingsDir= into backupPathName[MAX_PATH] with…

  • CVE-2026-77605HigSep 22, 2026
    risk 0.44cvss 7.8epss 0.00

    Notepad++ is a free and open-source source code editor. Prior to 8.9.8, the Folder as Workspace Run by system action in Notepad++ can resolve a different sibling file than the file selected by the user. When an attacker places a command script whose name is the selected…

  • CVE-2026-54758HigAug 17, 2026
    risk 0.44cvss 7.8epss 0.00

    Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the expandNppEnvironmentStrs function in PowerEditor/src/WinControls/StaticDialog/RunDlg/RunDlg.cpp copies a Notepad++ variable name between $( and ) into the fixed-size wchar_t str[MAX_PATH] stack buffer…

  • CVE-2026-3008MedApr 27, 2026
    risk 0.43cvss 6.6epss 0.00

    Successful exploitation of the string injection vulnerability could allow an attacker to obtain memory address information or crash the application.

  • CVE-2022-31901MedJan 19, 2023
    risk 0.42cvss 6.5epss 0.01

    Buffer overflow in function Notepad_plus::addHotSpot in Notepad++ v8.4.3 and earlier allows attackers to crash the application via two crafted files.

  • CVE-2025-49144HigJun 23, 2025
    risk 0.40cvss 7.3epss 0.01

    Notepad++ is a free and open-source source code editor. In versions 8.8.1 and prior, a privilege escalation vulnerability exists in the Notepad++ v8.8.1 installer that allows unprivileged users to gain SYSTEM-level privileges through insecure executable search paths. An attacker…

  • CVE-2023-40166MedAug 25, 2023
    risk 0.36cvss 5.5epss 0.00

    Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer read overflow in `FileManager::detectLanguageFromTextBegining `. The exploitability of this issue is not clear. Potentially, it may be used to leak internal memory…

  • CVE-2023-40164MedAug 25, 2023
    risk 0.36cvss 5.5epss 0.01

    Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to global buffer read overflow in `nsCodingStateMachine::NextStater`. The exploitability of this issue is not clear. Potentially, it may be used to leak internal memory allocation…

  • CVE-2023-40036MedAug 25, 2023
    risk 0.36cvss 5.5epss 0.00

    Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to global buffer read overflow in `CharDistributionAnalysis::HandleOneChar`. The exploitability of this issue is not clear. Potentially, it may be used to leak internal memory…

  • CVE-2022-31902MedFeb 1, 2023
    risk 0.36cvss 5.5epss 0.01

    Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add().

  • CVE-2023-6401MedNov 30, 2023
    risk 0.34cvss 5.3epss 0.00

    A vulnerability classified as problematic was found in NotePad++ up to 8.1. Affected by this vulnerability is an unknown functionality of the file dbghelp.exe. The manipulation leads to uncontrolled search path. An attack has to be approached locally. The identifier VDB-246421…

  • CVE-2026-5525MedApr 10, 2026
    risk 0.32cvss 6.0epss 0.00

    A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a user drags and drops a directory path of exactly 259 characters without a trailing backslash, the application appends a backslash and null terminator without…

  • CVE-2026-86056MedSep 22, 2026
    risk 0.29cvss 5.5epss 0.00

    Notepad++ is a free and open-source source code editor. Prior to 8.9.8, the NPPM_SAVESESSION handler in PowerEditor/src/NppBigSwitch.cpp converts lParam to a sessionInfo pointer and dereferences its nbFile, files, and sessionFilePathName members without checking for null. A…