CVE-2026-48770 | Notepad++ up to 8.9.6 COPYDATA_FULL_CMDLINE out-of-bounds (GHSA-r39g-3mcw-xcg2)
A vulnerability described as problematic has been identified in Notepad++ up to 8.9.6. The impacted element is an unknown function. The manipulation of the argument COPYDATA_FULL_CMDLINE results in out-of-bounds read.
This vulnerability is identified as CVE-2026-48770. The attack can be executed remotely. Additionally, an exploit exists.
Upgrading the affected component is recommended.