PT-2026-27321 · Src+3 · Src+3

Titan Team

·

Published

2026-03-24

·

Updated

2026-03-25

·

CVE-2026-4744

CVSS v4.0

9.3

Critical

VectorAV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:A/S:N/AU:N/R:U/V:D/RE:L/U:Amber
Name of the Vulnerable Software and Affected Versions Notepad3 versions prior to 6.25.714.1
Description An out-of-bounds read issue exists in the rizonesoft Notepad3 application, specifically within the scintilla, oniguruma, and src modules. The issue is related to the regcomp.C program file. This is a parser vulnerability where malicious regular expressions can lead to remote code execution.
Recommendations Update Notepad3 to version 6.25.714.1 or later.

Fix

RCE

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2026-4744

Affected Products

Notepad3
Oniguruma
Scintilla
Src