A vulnerability classified as problematic has been found in Notepad++ up to 8.9.6. This affects an unknown function. This manipulation causes out-of-bounds read.

This vulnerability is tracked as CVE-2026-48778. The attack is possible to be carried out remotely. Moreover, an exploit is present.

It is recommended to upgrade the affected component.