string injection vulnerability could allow an attacker to obtain memory address
information or crash the application.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Users and administrators of the affected product version are advised to update to the latest version 8.9.4 immediately.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 27 Apr 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Notepad++
Notepad++ notepad++ |
|
| Vendors & Products |
Notepad++
Notepad++ notepad++ |
Mon, 27 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-134 | |
| Metrics |
ssvc
|
Mon, 27 Apr 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV4_0
|
Mon, 27 Apr 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV4_0
|
cvssV3_1
|
Mon, 27 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Successful exploitation of the string injection vulnerability could allow an attacker to obtain memory address information or crash the application. | |
| Title | Vulnerability in Notepad++ | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CSA
Published:
Updated: 2026-04-27T13:29:42.232Z
Reserved: 2026-02-23T05:15:46.334Z
Link: CVE-2026-3008
Updated: 2026-04-27T13:09:37.529Z
Status : Awaiting Analysis
Published: 2026-04-27T07:16:03.597
Modified: 2026-04-27T18:57:20.293
Link: CVE-2026-3008
No data.
OpenCVE Enrichment
Updated: 2026-04-28T05:00:14Z