Sploitus

CVE-2026-3008

2 known exploits for CVE-2026-3008

Successful exploitation of the string injection vulnerability could allow an attacker to obtain memory address information or crash the application.

Affected products
Notepad++
Fix
Available
CVSS 3.1
6.6 MEDIUM
EPSS
0.2% (13th percentile)
Weakness
CWE-134
NVD status
Awaiting Analysis
Published
2026-04-27

Fix

Users and administrators of the affected product version are advised to update to the latest version 8.9.4 immediately.

CVE-2026-3008 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2026-3008

Proof-of-concept code and exploit modules indexed by Sploitus