string injection vulnerability could allow an attacker to obtain memory address
information or crash the application.
No advisories yet.
Solution
Users and administrators of the affected product version are advised to update to the latest version 8.9.4 immediately.
Workaround
No workaround given by the vendor.
Mon, 27 Apr 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Notepad++
Notepad++ notepad++ |
|
| Vendors & Products |
Notepad++
Notepad++ notepad++ |
Mon, 27 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-134 | |
| Metrics |
ssvc
|
Mon, 27 Apr 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV4_0
|
Mon, 27 Apr 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV4_0
|
cvssV3_1
|
Mon, 27 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Successful exploitation of the string injection vulnerability could allow an attacker to obtain memory address information or crash the application. | |
| Title | Vulnerability in Notepad++ | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CSA
Published:
Updated: 2026-04-27T13:29:42.232Z
Reserved: 2026-02-23T05:15:46.334Z
Link: CVE-2026-3008
Updated: 2026-04-27T13:09:37.529Z
Status : Awaiting Analysis
Published: 2026-04-27T07:16:03.597
Modified: 2026-04-27T18:57:20.293
Link: CVE-2026-3008
No data.
OpenCVE Enrichment
Updated: 2026-04-28T05:00:14Z