Vulnerabilities > CVE-2023-40031 - Unspecified vulnerability in Notepad-Plus-Plus Notepad++

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
notepad-plus-plus

Summary

Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer write overflow in `Utf8_16_Read::convert`. This issue may lead to arbitrary code execution. As of time of publication, no known patches are available in existing versions of Notepad++.

Vulnerable Configurations

Part Description Count
Application
Notepad-Plus-Plus
252