Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2818▲ 71 respecto a la semana anterior
Críticas / altas1488▲ 300 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)68▼ 447 respecto a la semana anterior
52 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (5.5) | 0.16% | — | Notepad++AI | 22/9/2026 | 23/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.8, the NPPM_SAVESESSION handler in PowerEditor/src/NppBigSwitch.cpp converts lParam to a sessionInfo pointer and dereferences its nbFile, files, and sessionFilePathName members without checking for null. A process running at the same or a higher… | |
| Pendiente de análisis | Alta (7.8) | 0.23% | — | Notepad++AI | 22/9/2026 | 28/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in NppParameters::writeSession in PowerEditor/src/Parameters.cpp because it copies a session path derived from -settingsDir= into backupPathName[MAX_PATH] with unbounded wcscpy and appends… | |
| Pendiente de análisis | Alta (7.3) | 0.12% | — | Notepad++AI | 22/9/2026 | 23/9/2026 | Notepad++ is a free and open-source source code editor. From 8.9.7 until 8.9.8, the Notepad++ updater and signature verification path can accept a modified GUP.exe file whose embedded certificate metadata remains present even though its Authenticode digest is invalid. An attacker who can replace or plant the… | |
| Pendiente de análisis | Media (6.7) | 0.14% | — | Notepad++AI | 22/9/2026 | 25/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ incompletely enforces shortcuts.xml HMAC validation because WM_MACRODLGRUNMACRO, the Run a Macro Multiple Times entry point, calls macroPlayback() without the validation used by command(). A tampered shortcuts.xml macro that is blocked… | |
| Pendiente de análisis | Alta (8.6) | 0.22% | — | Notepad++AI | 22/9/2026 | 23/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.8, Notepad++ contains a stack buffer overflow in PluginsManager::loadPluginFromPath in PowerEditor/src/MISC/PluginsManager/PluginsManager.cpp because the plugin-supplied GetLexerCount() result controls a loop that writes to containers[30] without… | |
| Pendiente de análisis | Alta (7.8) | 0.21% | — | Notepad++AI | 22/9/2026 | 28/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.8, the Folder as Workspace Run by system action in Notepad++ can resolve a different sibling file than the file selected by the user. When an attacker places a command script whose name is the selected text-file path with .cmd appended, and the user… | |
| Pendiente de análisis | Media (5.4) | 0.12% | — | Notepad++AI | 17/8/2026 | 9/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.7, macros loaded from an attacker-controlled shortcuts.xml bypass the HMAC validation applied to UserDefinedCommands and can invoke Scintilla actions and the internal Open in Default Viewer command in an elevated Notepad++ process, allowing protected… | |
| Pendiente de análisis | Alta (8.1) | 0.51% | — | Notepad++AI | 17/8/2026 | 9/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the WinGup decompress function joins untrusted ZIP entry names to unzipDestTo without canonical containment validation, allowing an entry such as ../mimeTools/mimeTools.dll to overwrite a DLL in a sibling plugin directory and execute… | |
| Pendiente de análisis | Alta (7.8) | 0.19% | — | Notepad++AI | 17/8/2026 | 9/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the expandNppEnvironmentStrs function in PowerEditor/src/WinControls/StaticDialog/RunDlg/RunDlg.cpp copies a Notepad++ variable name between $( and ) into the fixed-size wchar_t str[MAX_PATH] stack buffer without bounding the m loop index,… | |
| Pendiente de análisis | Media (5.1) | 0.17% | — | Notepad++AI | 17/8/2026 | 9/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.7, Notepad++ validates the backupFilePath attribute from session.xml with std::wstring::starts_with against the expected backup directory without path normalization, allowing parent-directory sequences during snapshot-mode restoration to read an… | |
| Pendiente de análisis | Media (5.4) | 0.19% | — | Notepad++AI | 11/8/2026 | 9/9/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the Notepad++ Windows 11 x64 and ARM64 installer passes the attacker-influenced installation directory `$INSTDIR` from PowerEditor/installer/nppSetup.nsi into a PowerShell `-Command` string used by RegisterMSIX to invoke Add-AppxPackage, allowing… | |
| Analizada | Alta (7.8) | 0.19% | — | Rizonesoft Notepad3 | 2/7/2026 | 8/7/2026 | Notepad3 through 6.25.822.1 contains a DLL search-order hijacking vulnerability in the About-dialog code path in src/Notepad3.c. The application calls LoadLibrary(L"MSFTEDIT.DLL") with a bare DLL name, which allows a local attacker to place a malicious MSFTEDIT.DLL in the application directory or another preferred DLL… | |
| Analizada | Alta (7.5) | 0.13% | — | Notepad-plus-plus Notepad++ | 26/6/2026 | 29/6/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.6.4, NppCommands.cpp checks the HMAC of the on-disk shortcuts.xml at the moment a user command fires (Time-of-Check). However, the command payload is taken from the in-memory _userCommands vector, which is populated at application startup and never… | |
| Analizada | Alta (7.8) | 0.21% | — | Notepad-plus-plus Notepad++ | 26/6/2026 | 29/6/2026 | Notepad++ is a free and open-source source code editor. In v8.9.6.1, isInTrustedDirectory() does NOT canonicalize the path before checking. It uses a prefix-based check (PathIsPrefix() or equivalent) that matches paths starting with trusted directory strings. A path traversal using ..\..\ after a trusted directory… | |
| Modificada | Alta (7.8) | 0.21% | — | Notepad-plus-plus Notepad++ | 26/6/2026 | 30/6/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the <Command> tag text content inside <UserDefinedCommands> in shortcuts.xml is read by NppXml::value(aNode) (Parameters.cpp:3658) in the feedUserCmds() function and stored in UserCommand._cmd without any validation. When the user clicks the… | |
| Analizada | Alta (7.8) | 0.62% | — | Notepad-plus-plus Notepad++ | 26/6/2026 | 29/6/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the <GUIConfig name="commandLineInterpreter"> tag in config.xml is read by NppXml::value() (Parameters.cpp:6430) and stored in _nppGUI._commandLineInterpreter without any validation, whitelist, or digital signature check. When the user triggers… | |
| Analizada | Media (5) | 0.14% | — | Notepad-plus-plus Notepad++ | 26/6/2026 | 29/6/2026 | Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, a local process in the same interactive Windows session can send a malformed WM_COPYDATA message to Notepad++ using the COPYDATA_FULL_CMDLINE path. The handler appears to process COPYDATASTRUCT.lpData as an unbounded NUL-terminated wchar_t*… | |
| Analizada | Alta (7.5) | 0.15% | — | Notepad-plus-plus Notepad++ | 26/6/2026 | 29/6/2026 | Notepad++ is a free and open-source source code editor. From 8.9.4 until 8.9.6, Notepad++ contains a local privilege escalation vulnerability in the installer. During installation, the installer invokes powershell.exe without using an absolute path after setting the working directory to the installation contextMenu… | |
| Aplazada | Alta (8.7) | 0.28% | — | Memono NotepadAI | 10/5/2026 | 25/7/2026 | memono Notepad 4.2 contains a denial of service vulnerability that allows attackers to crash the application by pasting excessively long character buffers into note fields. Attackers can generate a payload containing 350000 repeated characters and paste it twice into a new note to trigger an application crash on iOS… | |
| Analizada | Alta (7.8) | 0.28% | — | Dail8859 Notepad Next | 7/5/2026 | 17/6/2026 | Notepad Next is a cross-platform, reimplementation of Notepad++. Prior to version 0.14, NotepadNext's detectLanguageFromExtension() function interpolates a file's extension directly into a Lua script without sanitization. An attacker can craft a filename whose extension contains Lua code, which executes automatically… | |
| Analizada | Media (4.6) | 0.19% | — | Notepad-plus-plus Notepad++ | 30/4/2026 | 17/6/2026 | Notepad++ 8.9.3 contains a format string injection vulnerability in the Find Results panel handler that allows attackers to cause denial of service and information disclosure by crafting a malicious nativeLang.xml language pack file. Attackers can distribute a poisoned language pack through community channels that… | |
| Analizada | Alta (7.8) | 0.18% | — | Notepad-plus-plus Notepad++ | 10/4/2026 | 17/6/2026 | A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handler component. When a user drags and drops a directory path of exactly 259 characters without a trailing backslash, the application appends a backslash and null terminator without proper bounds checking, resulting in a… | |
| Analizada | Media (6.5) | 1.4% | — | Microsoft XML Notepad | 31/3/2026 | 24/7/2026 | XML Notepad is a Windows program that provides a simple intuitive User Interface for browsing and editing XML documents. Prior to version 2.9.0.21, XML Notepad does not disable DTD processing by default which means external entities are resolved automatically. There is a well known attack related to malicious DTD… | |
| Pendiente de análisis | Crítica (9.3) | 0.17% | — | Rizonesoft Notepad3AI | 24/3/2026 | 17/6/2026 | Out-of-bounds Read vulnerability in rizonesoft Notepad3 (scintilla/oniguruma/src modules). This vulnerability is associated with program files regcomp.C. This issue affects Notepad3: before 6.25.714.1. | |
| Analizada | Alta (7.3) | 0.21% | — | Flos-freeware Notepad2 | 22/3/2026 | 17/6/2026 | A weakness has been identified in Flos Freeware Notepad2 4.2.25. This impacts an unknown function in the library TextShaping.dll. Executing a manipulation can lead to uncontrolled search path. The attack is restricted to local execution. The attack requires a high level of complexity. The exploitability is said to be… |