{"schema_version":1,"title":"Notepad++ vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 17 vulnerabilities in Notepad++: 5 in the last 7 days and 9 in the last 90 days, 1 of them critical and 1 exploited in the wild. The most recent, CVE-2026-86056, was published on 22 September 2026.","url":"https://junglewise.ai/threats/technologies/notepad-","json_url":"https://junglewise.ai/threats/technologies/notepad-.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/notepad-","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":7,"all_time":17,"critical":1,"exploited":1,"last_7_days":5,"last_30_days":5,"last_90_days":9,"last_365_days":17},"latest":[{"cve":"CVE-2026-86056","cvss":5.5,"epss":0.0016,"slug":"cve-2026-86056-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ null pointer dereference in NPPM_SAVESESSION handler","severity":"medium","exploited":false,"published_at":"2026-09-22T18:17:24.087+00:00","url":"https://junglewise.ai/threats/cve-2026-86056-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-86054","cvss":7.8,"epss":0.002,"slug":"cve-2026-86054-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ stack buffer overflow in session path handling","severity":"high","exploited":false,"published_at":"2026-09-22T18:17:23.827+00:00","url":"https://junglewise.ai/threats/cve-2026-86054-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-85995","cvss":7.3,"epss":0.0012,"slug":"cve-2026-85995-notepad-is-a-free-and-open-source-source-code-editor-from-8-9-7","title":"Notepad++ Authenticode signature verification bypass","severity":"high","exploited":false,"published_at":"2026-09-22T18:17:23.65+00:00","url":"https://junglewise.ai/threats/cve-2026-85995-notepad-is-a-free-and-open-source-source-code-editor-from-8-9-7"},{"cve":"CVE-2026-85288","cvss":6.7,"epss":0.0012,"slug":"cve-2026-85288-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ HMAC validation bypass in macro execution","severity":"medium","exploited":false,"published_at":"2026-09-22T18:17:23.373+00:00","url":"https://junglewise.ai/threats/cve-2026-85288-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-77605","cvss":7.8,"epss":0.0019,"slug":"cve-2026-77605-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ arbitrary code execution via path traversal in Folder as Workspace","severity":"high","exploited":false,"published_at":"2026-09-22T18:17:19.393+00:00","url":"https://junglewise.ai/threats/cve-2026-77605-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-71858","epss":0.0012,"slug":"cve-2026-71858-notepad-shortcuts-xml-macro-hmac-validation-bypass","title":"Notepad++ shortcuts.xml macro HMAC validation bypass","severity":"info","exploited":false,"published_at":"2026-08-17T20:16:46.207+00:00","url":"https://junglewise.ai/threats/cve-2026-71858-notepad-shortcuts-xml-macro-hmac-validation-bypass"},{"cve":"CVE-2026-57233","cvss":8.1,"epss":0.0051,"slug":"cve-2026-57233-notepad-path-traversal-in-wingup-plugin-extraction","title":"Notepad++ path traversal in WinGup plugin extraction","severity":"high","exploited":false,"published_at":"2026-08-17T20:16:44.453+00:00","url":"https://junglewise.ai/threats/cve-2026-57233-notepad-path-traversal-in-wingup-plugin-extraction"},{"cve":"CVE-2026-52886","epss":0.0017,"slug":"cve-2026-52886-notepad-path-traversal-via-session-xml-backupfilepath","title":"Notepad++ path traversal via session.xml backupFilePath","severity":"info","exploited":false,"published_at":"2026-08-17T20:16:44.077+00:00","url":"https://junglewise.ai/threats/cve-2026-52886-notepad-path-traversal-via-session-xml-backupfilepath"},{"cve":"CVE-2026-73250","epss":0.0019,"slug":"cve-2026-73250-notepad-command-injection-in-windows-installer","title":"Notepad++ command injection in Windows installer","severity":"info","exploited":false,"published_at":"2026-08-11T23:18:10.32+00:00","url":"https://junglewise.ai/threats/cve-2026-73250-notepad-command-injection-in-windows-installer"},{"cve":"CVE-2026-52885","cvss":7.5,"slug":"cve-2026-52885-notepad-toctou-race-condition-in-shortcuts-xml-hmac-check","title":"Notepad++ TOCTOU race condition in shortcuts.xml HMAC check","severity":"info","exploited":false,"published_at":"2026-06-26T21:16:34.92+00:00","url":"https://junglewise.ai/threats/cve-2026-52885-notepad-toctou-race-condition-in-shortcuts-xml-hmac-check"},{"cve":"CVE-2026-52884","cvss":7.8,"slug":"cve-2026-52884-notepad-path-traversal-and-security-bypass-in-shortcuts-command","title":"Notepad++ path traversal and security bypass in shortcuts command validation","severity":"high","exploited":false,"published_at":"2026-06-26T21:16:34.797+00:00","url":"https://junglewise.ai/threats/cve-2026-52884-notepad-path-traversal-and-security-bypass-in-shortcuts-command"},{"cve":"CVE-2026-48800","cvss":7.8,"slug":"cve-2026-48800-notepad-os-command-injection-in-userdefinedcommands","title":"Notepad++ OS command injection in UserDefinedCommands","severity":"high","exploited":false,"published_at":"2026-06-26T21:16:34.297+00:00","url":"https://junglewise.ai/threats/cve-2026-48800-notepad-os-command-injection-in-userdefinedcommands"},{"cve":"CVE-2026-48778","cvss":7.8,"slug":"cve-2026-48778-notepad-os-command-injection-in-commandlineinterpreter","title":"Notepad++ OS command injection in commandLineInterpreter configuration","severity":"high","exploited":false,"published_at":"2026-06-26T21:16:34.167+00:00","url":"https://junglewise.ai/threats/cve-2026-48778-notepad-os-command-injection-in-commandlineinterpreter"},{"cve":"CVE-2026-48770","cvss":5,"slug":"cve-2026-48770-notepad-out-of-bounds-read-in-wm-copydata-handler","title":"Notepad++ out-of-bounds read in WM_COPYDATA handler","severity":"medium","exploited":false,"published_at":"2026-06-26T21:16:34.033+00:00","url":"https://junglewise.ai/threats/cve-2026-48770-notepad-out-of-bounds-read-in-wm-copydata-handler"},{"cve":"CVE-2026-46710","cvss":7.5,"slug":"cve-2026-46710-notepad-privilege-escalation-in-installer-via-untrusted-search","title":"Notepad++ privilege escalation in installer via untrusted search path","severity":"info","exploited":false,"published_at":"2026-06-26T21:16:33.903+00:00","url":"https://junglewise.ai/threats/cve-2026-46710-notepad-privilege-escalation-in-installer-via-untrusted-search"},{"cve":"CVE-2026-5525","cvss":6,"epss":0.0001,"slug":"cve-2026-5525-notepad-stack-buffer-overflow-in-file-drop-handler","title":"Notepad++ stack buffer overflow in file drop handler","severity":"medium","exploited":false,"published_at":"2026-04-10T08:16:26.067+00:00","url":"https://junglewise.ai/threats/cve-2026-5525-notepad-stack-buffer-overflow-in-file-drop-handler"},{"cve":"CVE-2025-15556","cvss":7.5,"epss":0.0609,"slug":"cve-2025-15556-notepad-code-execution-via-wingup-updater-integrity-failure","title":"Notepad++ code execution via WinGUp updater integrity failure","severity":"critical","exploited":true,"published_at":"2026-02-12T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-15556-notepad-code-execution-via-wingup-updater-integrity-failure"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":3},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":5}],"related":[],"technology":{"hub":true,"name":"Notepad++","slug":"notepad-","vendor":{"name":"Notepad++","slug":"notepad++","url":"https://junglewise.ai/threats/vendors/notepad++"},"aliases":[],"category":"text-editor","homepage":"https://notepad-plus-plus.org/","repo_url":"https://github.com/notepad-plus-plus/notepad-plus-plus","description":"Notepad++ is a free and open-source text and source code editor for Microsoft Windows.","url":"https://junglewise.ai/threats/technologies/notepad-"},"most_severe":[{"cve":"CVE-2025-15556","cvss":7.5,"epss":0.0609,"slug":"cve-2025-15556-notepad-code-execution-via-wingup-updater-integrity-failure","title":"Notepad++ code execution via WinGUp updater integrity failure","severity":"critical","exploited":true,"published_at":"2026-02-12T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-15556-notepad-code-execution-via-wingup-updater-integrity-failure"},{"cve":"CVE-2026-57233","cvss":8.1,"epss":0.0051,"slug":"cve-2026-57233-notepad-path-traversal-in-wingup-plugin-extraction","title":"Notepad++ path traversal in WinGup plugin extraction","severity":"high","exploited":false,"published_at":"2026-08-17T20:16:44.453+00:00","url":"https://junglewise.ai/threats/cve-2026-57233-notepad-path-traversal-in-wingup-plugin-extraction"},{"cve":"CVE-2026-86054","cvss":7.8,"epss":0.002,"slug":"cve-2026-86054-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ stack buffer overflow in session path handling","severity":"high","exploited":false,"published_at":"2026-09-22T18:17:23.827+00:00","url":"https://junglewise.ai/threats/cve-2026-86054-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-77605","cvss":7.8,"epss":0.0019,"slug":"cve-2026-77605-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ arbitrary code execution via path traversal in Folder as Workspace","severity":"high","exploited":false,"published_at":"2026-09-22T18:17:19.393+00:00","url":"https://junglewise.ai/threats/cve-2026-77605-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-52884","cvss":7.8,"slug":"cve-2026-52884-notepad-path-traversal-and-security-bypass-in-shortcuts-command","title":"Notepad++ path traversal and security bypass in shortcuts command validation","severity":"high","exploited":false,"published_at":"2026-06-26T21:16:34.797+00:00","url":"https://junglewise.ai/threats/cve-2026-52884-notepad-path-traversal-and-security-bypass-in-shortcuts-command"},{"cve":"CVE-2026-48800","cvss":7.8,"slug":"cve-2026-48800-notepad-os-command-injection-in-userdefinedcommands","title":"Notepad++ OS command injection in UserDefinedCommands","severity":"high","exploited":false,"published_at":"2026-06-26T21:16:34.297+00:00","url":"https://junglewise.ai/threats/cve-2026-48800-notepad-os-command-injection-in-userdefinedcommands"},{"cve":"CVE-2026-48778","cvss":7.8,"slug":"cve-2026-48778-notepad-os-command-injection-in-commandlineinterpreter","title":"Notepad++ OS command injection in commandLineInterpreter configuration","severity":"high","exploited":false,"published_at":"2026-06-26T21:16:34.167+00:00","url":"https://junglewise.ai/threats/cve-2026-48778-notepad-os-command-injection-in-commandlineinterpreter"},{"cve":"CVE-2026-85995","cvss":7.3,"epss":0.0012,"slug":"cve-2026-85995-notepad-is-a-free-and-open-source-source-code-editor-from-8-9-7","title":"Notepad++ Authenticode signature verification bypass","severity":"high","exploited":false,"published_at":"2026-09-22T18:17:23.65+00:00","url":"https://junglewise.ai/threats/cve-2026-85995-notepad-is-a-free-and-open-source-source-code-editor-from-8-9-7"},{"cve":"CVE-2026-85288","cvss":6.7,"epss":0.0012,"slug":"cve-2026-85288-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9","title":"Notepad++ HMAC validation bypass in macro execution","severity":"medium","exploited":false,"published_at":"2026-09-22T18:17:23.373+00:00","url":"https://junglewise.ai/threats/cve-2026-85288-notepad-is-a-free-and-open-source-source-code-editor-prior-to-8-9"},{"cve":"CVE-2026-5525","cvss":6,"epss":0.0001,"slug":"cve-2026-5525-notepad-stack-buffer-overflow-in-file-drop-handler","title":"Notepad++ stack buffer overflow in file drop handler","severity":"medium","exploited":false,"published_at":"2026-04-10T08:16:26.067+00:00","url":"https://junglewise.ai/threats/cve-2026-5525-notepad-stack-buffer-overflow-in-file-drop-handler"}],"generated_at":"2026-09-26T12:07:00.15149+00:00"}