Improper privilege management in Notepad++ - #VU144987
Published: August 24, 2026
Vulnerability details
The vulnerability allows a local user to execute arbitrary code with administrator privileges.
The vulnerability exists due to improper privilege management in the WM_COMMAND handling for user-defined commands when sending a crafted WM_COMMAND message to an elevated Notepad++ instance after forging the HMAC protecting shortcuts.xml. A local user can send a crafted WM_COMMAND message that triggers a forged user-defined command to execute arbitrary code with administrator privileges.
User interaction is required to have an elevated Notepad++ instance running.