PT-2025-26589 · Unknown · Notepadnext

Titan Team

·

Published

2025-06-23

·

Updated

2025-06-23

·

CVE-2025-52939

CVSS v4.0

9.4

Critical

VectorAV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:Y/R:U/V:C/RE:M/U:Red
Name of the Vulnerable Software and Affected Versions: NotepadNext versions through v0.11
Description: The issue is an Out-of-bounds Write vulnerability in dail8859 NotepadNext, affecting the src/lua/src modules, specifically program files ldebug.C and lvm.C.
Recommendations: For NotepadNext versions through v0.11, update to a version that addresses the Out-of-bounds Write vulnerability in the src/lua/src modules. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

AZL-64404
CVE-2025-52939

Affected Products

Notepadnext