NULL pointer dereference in Notepad++ - #VU151931
Published: September 24, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper validation of BufferID values in the NPPM_GETBUFFERLANGTYPE and NPPM_GETBUFFERENCODING handlers when processing a nonzero BufferID that does not identify a live buffer. A local user can send a specially crafted NPPM message with an invalid BufferID to cause a denial of service.
Direct NPPM message delivery is limited to same-integrity processes.