<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Notepad++ v8.8.9: Vulnerability-fix]]></title><description><![CDATA[<p dir="auto">Notepad++ release 8.8.9 is available:<br />
<a href="https://notepad-plus-plus.org/news/v889-released/" rel="nofollow ugc">https://notepad-plus-plus.org/news/v889-released/</a></p>
<p dir="auto"><strong>Notepad++ v8.8.9 new security enhancement, new features, regression fixes &amp; bug-fixes:</strong></p>
<ol>
<li>Vulnerability-fix: verify certificate &amp; signature on downloaded update installer. (Implement <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/commit/bcf2aa68ef414338d717e20e059459570ed6c5ab" rel="nofollow ugc">Notepad++ commit</a>, <a href="https://github.com/notepad-plus-plus/wingup/commit/ce0037549995ed0396cc363544d14b3425614fdb" rel="nofollow ugc">WinGUp commit</a>)</li>
<li>Fix corrupted file loading on Windows system using the full UTF-8 code page. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17234" rel="nofollow ugc">#17234</a>)</li>
<li>Fix crashing when hashing SHA-256 for large files. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17243" rel="nofollow ugc">#17243</a>)</li>
<li>Fix “Select &amp; Find Next” command not working regression. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17200" rel="nofollow ugc">#17200</a>)</li>
<li>MSI improvement: Add NOUPDATER option &amp; suppress REBOOT. (Fix <a href="https://community.notepad-plus-plus.org/topic/27250/notepad-8-8-8-release/12">#ref1</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/2326#issuecomment-3578029731" rel="nofollow ugc">#ref2</a>)</li>
<li>Fix Perl Function List causes Notepad++ to freeze on tab switch regression. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17152" rel="nofollow ugc">#17152</a>)</li>
<li>Fix context menu truncated regression on localization change. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17249" rel="nofollow ugc">#17249</a>)</li>
<li>Add ability to update users’ langs.xml &amp; stylers.xml from model XML files. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17128" rel="nofollow ugc">#17128</a>)</li>
<li>Update to Scintilla 5.5.8 &amp; Lexilla 5.4.6. (Update <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17191" rel="nofollow ugc">#17191</a>)</li>
<li>Add feature to sort lines in a document by length. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/15615" rel="nofollow ugc">#15615</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17186" rel="nofollow ugc">#17186</a>)</li>
<li>Undo &amp; redo enhancement: restore vertical scroll position after undo &amp; redo. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17194" rel="nofollow ugc">#17194</a>)</li>
<li>Fix mouse wheel horizontal scrolling amount not respecting Windows setting. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/9480" rel="nofollow ugc">#9480</a>)</li>
<li>Fix document map regression with keyboard input. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17224" rel="nofollow ugc">#17224</a>)</li>
<li>Fix wrong system font scaling on Windows 7. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17066" rel="nofollow ugc">#17066</a>)</li>
<li>Update to nlohman json 3.12.0. (Update <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17242" rel="nofollow ugc">#17242</a>)</li>
</ol>
<p dir="auto">As usual, the auto-update will be triggered in 1 week, if no critical issue found.</p>
]]></description><link>https://community.notepad-plus-plus.org/topic/27298/notepad-v8-8-9-vulnerability-fix</link><generator>RSS for Node</generator><lastBuildDate>Tue, 18 Aug 2026 09:23:45 GMT</lastBuildDate><atom:link href="https://community.notepad-plus-plus.org/topic/27298.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 09 Dec 2025 17:41:07 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Mon, 15 Dec 2025 21:10:47 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a><br />
Sometimes there are users (like me) that do some silly thing, that are not expected.</p>
<p dir="auto">In version 8.6 a new style had been introduced: “Multi selected text colour”. The effect for me was, that in column-select mode the selection was shown only partially (last line only). It took me some time to find out what was my fault. I use a personalised style, where the default background colour happens to have the value “C0C0C0”, the same value as the background for this new style. Therefore I could not see the selection because it had the same bg-colour as the rest of my text. For “Selected text colour” I use the value “A0A0A0”; after applying this value to the new style, it worked again.</p>
<p dir="auto">I know, it is really a very special case, but it may happen. A similar situation might arise with other changes in the future. For these cases it would help to have a backup for comparison.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104217</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104217</guid><dc:creator><![CDATA[sevem47]]></dc:creator><pubDate>Mon, 15 Dec 2025 21:10:47 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Mon, 15 Dec 2025 15:40:34 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a> said in <a href="/post/104214">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/saquib-akhtar" aria-label="Profile: Saquib-Akhtar">@<bdi>Saquib-Akhtar</bdi></a> said in <a href="/post/104213">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">But it looks like next any upgrade can override this config and need to do it manually again.</p>
</blockquote>
<p dir="auto">Nope.  It does not overwrite <strong>any</strong> information in the style or theme file (except where it tracks the model-file’s date).  The styles that got the light-mode colors were styles that your theme was missing.  It only adds missing information, and will not overwrite any style that already exists in your theme.</p>
</blockquote>
<p dir="auto">That’s why we don’t need to do the backup.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104215</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104215</guid><dc:creator><![CDATA[donho]]></dc:creator><pubDate>Mon, 15 Dec 2025 15:40:34 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Mon, 15 Dec 2025 15:22:04 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/saquib-akhtar" aria-label="Profile: Saquib-Akhtar">@<bdi>Saquib-Akhtar</bdi></a> said in <a href="/post/104213">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">But it looks like next any upgrade can override this config and need to do it manually again.</p>
</blockquote>
<p dir="auto">Nope.  It does not overwrite <strong>any</strong> information in the style or theme file (except where it tracks the model-file’s date).  The styles that got the light-mode colors were styles that your theme was missing.  It only adds missing information, and will not overwrite any style that already exists in your theme.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104214</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104214</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Mon, 15 Dec 2025 15:22:04 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Mon, 15 Dec 2025 11:07:13 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a> Hi after following those 2 Color RGB Values settings the white margin is now of same Khaki Style back again. But it looks like next any upgrade can override this config and need to do it manually again.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104213</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104213</guid><dc:creator><![CDATA[Saquib Akhtar]]></dc:creator><pubDate>Mon, 15 Dec 2025 11:07:13 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Sun, 14 Dec 2025 22:07:37 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/sevem47" aria-label="Profile: sevem47">@<bdi>sevem47</bdi></a><br />
No messagebox for sure, and no backup file for the moment.<br />
The update xml files should be without issue, and we will do our best to make the update without issue.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104212</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104212</guid><dc:creator><![CDATA[donho]]></dc:creator><pubDate>Sun, 14 Dec 2025 22:07:37 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Sun, 14 Dec 2025 20:57:51 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/sevem47" aria-label="Profile: sevem47">@<bdi>sevem47</bdi></a> ,</p>
<p dir="auto">A backup wouldn’t be a bad idea.  (And given the problems with the v8.8.9 version, I wish the backup had been there to begin with.)  If <a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a> agrees, I can add the backup with just a couple lines of code.</p>
<p dir="auto">As for a messagebox or other user prompt: I believe the majority of users would find it more annoying than helpful (given that there are users complaining about the 30-60ms that the current check adds, they would definitely complain about having to answer prompts for the langs and/or stylers/theme files).  I am doubtful that <a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a> would want me to implement that – if he does, I could add it; but my guess is he’d say no to it.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104211</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104211</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Sun, 14 Dec 2025 20:57:51 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Sun, 14 Dec 2025 20:16:09 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a><br />
In your FAQ you describe the way to manually update the style using an “old” version of the file. Do you think it would make sense that in your code you do a backup of the file before you do the update? Like this any unexpected change can be compared to the previous version of the style.<br />
Another idea: Would it make sense to inform the user about the change of style (e.g. in a message box)? Perhaps the user could even be asked, if he agrees to update the files. A message something like “your file is outdated. Do you want to update to a current version. yes/no”<br />
Just some thoughts for this great feature you implemented.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104210</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104210</guid><dc:creator><![CDATA[sevem47]]></dc:creator><pubDate>Sun, 14 Dec 2025 20:16:09 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Sat, 13 Dec 2025 01:54:55 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a> said:</p>
<blockquote>
<p dir="auto">I foolishly chose to set the colors</p>
</blockquote>
<p dir="auto">I think you’re being too hard on yourself.<br />
The overall idea of the change is a good one and moves the Notepad++ code forward.<br />
Sometimes it just happens that development takes 3 steps forward and  1 step back, for a net gain of +2.  Thus, still a win.<br />
Thank you for your contribution.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104200</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104200</guid><dc:creator><![CDATA[Alan Kilborn]]></dc:creator><pubDate>Sat, 13 Dec 2025 01:54:55 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Sat, 13 Dec 2025 00:36:24 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a> said in <a href="/post/104193">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">Sorry for the mess it has created. I highly recommend not triggering auto-update on this one.</p>
</blockquote>
<p dir="auto">No problem - as the author of theme system, I didn’t think of it while I was reviewing the PR either.</p>
<blockquote>
<p dir="auto">I should have the a PR today or tomorrow which will fix #17289</p>
</blockquote>
<p dir="auto">Take your time. It’s an annoying bug for sure, but I prefer that we think of every aspect to not run after another corner case after next release.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104197</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104197</guid><dc:creator><![CDATA[donho]]></dc:creator><pubDate>Sat, 13 Dec 2025 00:36:24 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 16:33:59 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/kleinerdickertiger" aria-label="Profile: KleinerDickerTiger">@<bdi>KleinerDickerTiger</bdi></a> said in <a href="/post/104194">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">I understand what you wrote, but that still doesn’t explain the problem.</p>
</blockquote>
<p dir="auto">If it doesn’t explain the problem to you, then either you didn’t understand or I didn’t say enough.</p>
<blockquote>
<p dir="auto">PowerShell was just an example.</p>
</blockquote>
<p dir="auto">As it was for me.</p>
<p dir="auto">Many of the themes are missing many of the languages, including Powershell.  And even on the languages they do have, over time, new styles have been added to some of those languages.  So your themes were missing many languages and many styles that Notepad++ supports.  The reason that you didn’t notice in v8.8.8 and earlier is because the older versions of Notepad++ would just use the theme’s default FG/BG colors on any style or language that wasn’t defined… but it <em>wouldn’t</em> allow you to change them in the Style Configurator, because they would’t even be listed there.  (For example, if you had originally installed v8.3.1 a couple years ago, and had upgraded through v8.8.8, you would <em>not</em> be able to use Style Configurator to set the IDENTIFIER or FUNCTION colors in Powershell, even though Notepad++ has supported those colors for a long time now.)</p>
<p dir="auto">The new feature in v8.8.9 adds in those missing languages and missing styles, and that is working as designed.  And with that, you can now set those colors to anything you want in the Style Configurator, as designed.  The problem is that when it adds in the missing languages and styles, it had to pick a color of some sort… and I foolishly chose to set the colors to be the same colors that would be used in <code>stylers.xml</code> (ie, it matches the default light theme of Notepad++): this makes the jarring black-text-on-white-background for any of the languages or styles that were added into the theme by the new v8.8.9 feature.</p>
<p dir="auto">Starting in the next version, if it finds a language or style entry that is missing from your theme, instead of using the light-theme’s equivalent color, it will populate any missing colors using your theme’s default FG/BG colors, so it will behave more like v8.8.8-and-earlier, but with the improvement that you will now be able to edit those previously-missing colors in the Style Configurator, and they will be saved in the theme file going forward (neither of which v8.8.8-and-earlier did for you).</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104195</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104195</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Fri, 12 Dec 2025 16:33:59 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 16:19:42 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a></p>
<p dir="auto">Thank you for your reply. I understand what you wrote, but that still doesn’t explain the problem. PowerShell was just an example. This also applies to other languages, like Python. But anyway. Up to version 8.8.8, this problem didn’t exist. In this version, only ‘Black board’ causes problems, but all the other styles look good and don’t have the issues that were present in version 8.8.9.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104194</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104194</guid><dc:creator><![CDATA[KleinerDickerTiger]]></dc:creator><pubDate>Fri, 12 Dec 2025 16:19:42 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 15:13:44 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a> said in <a href="/post/104147">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">Add ability to update users’ langs.xml &amp; stylers.xml from model XML files.</p>
</blockquote>
<p dir="auto">Sorry for the mess it has created.  I highly recommend <em>not</em> triggering auto-update on this one.</p>
<p dir="auto">I should have the a PR today or tomorrow which will fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/17289" rel="nofollow ugc">#17289</a></p>
]]></description><link>https://community.notepad-plus-plus.org/post/104193</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104193</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Fri, 12 Dec 2025 15:13:44 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 15:05:39 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/kleinerdickertiger" aria-label="Profile: KleinerDickerTiger">@<bdi>KleinerDickerTiger</bdi></a> said in <a href="/post/104189">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">To be safe, I unpacked the portable version on a clean reference system, and the effect was immediately there. So it wasn’t an upgrade. The only style that works is ‘DarkModeDefault’</p>
<p dir="auto">Replacing any files didn’t help. Even if I replace all files except for notepad.exe, nothing changes.</p>
</blockquote>
<p dir="auto">Only 12 of the 22 themes have Powershell defined: DansLeRuSH-Dark, DarkModeDefault, HotFudgeSundae, khaki, Monokai, MossyLawn, Navajo, Obsidian, Plastic Code Wrap, Solarized-light, Solarized, and Zenburn.  So in the portable version 8.8.9, andy of those 12 should be colored reasonably.</p>
<p dir="auto">Here are a few examples of powershell highlighting working in the portable:<br />
<img src="/assets/uploads/files/1765551297234-ea7709fb-742d-458e-a1b0-b060c727dadf-image.png" alt="ea7709fb-742d-458e-a1b0-b060c727dadf-image.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1765551311476-23edc6ec-064a-45d6-910f-7a12452c47f6-image.png" alt="23edc6ec-064a-45d6-910f-7a12452c47f6-image.png" class=" img-fluid img-markdown" /><br />
<img src="/assets/uploads/files/1765551498766-73f2b9ef-da19-429c-a66e-958c8a632eda-image.png" alt="73f2b9ef-da19-429c-a66e-958c8a632eda-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">But as you can tell by the entries, even in those screenshots, even if the theme defines powershell, it doesn’t always have all its styles defined for that language, and the v8.8.9 theme updater grabbed the colors from the default stylers.xml for the missing colors, which makes it jarring for many of the themes.  (As I said, it was a bad decision on my part, and the next release should use a better default color, so things at least blend in.)</p>
<p dir="auto">But all the style entries are there for you now, so you should be able to choose the theme you want to use when editing Powershell files, then go through each of the Style entries for <strong>Language: <code>PowerShell</code></strong>: any that have a <strong>Background colour</strong> of White, you could either manually set to a color that fits with your theme, or you can right-click the <strong>Background colour</strong> box, and it will inherit the backgroud color from the theme’s Default background, which will be less jarring.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104192</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104192</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Fri, 12 Dec 2025 15:05:39 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 14:43:30 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/saquib-akhtar" aria-label="Profile: Saquib-Akhtar">@<bdi>Saquib-Akhtar</bdi></a> said in <a href="/post/104190">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a> After recent update there is some issue with Theme or Style as now, I see 1 White Column additionally between Margin &amp; Line Number separator. Please see image. It actually makes look like as if something is missing &amp; distracts attention.</p>
</blockquote>
<p dir="auto">It’s actually two columns (Bookmark margin and Change History margin), and it <em>was</em> missing information in your theme file; v8.8.9 tried to fill in the missing information, but I made a bad decision on what color values to use to populate the missing information for v8.8.9.  (In the next version, it will hopefully make default color decisions that will be less annoying to people… but that won’t help anyone who has already run v8.8.9).</p>
<p dir="auto">For your issue, the fix is easy enough: it looks like you are on khaki theme, so I will give example colors accordingly.  The quick thing for those two columns is to go to <strong>Settings &gt; Style Configurator</strong>, leave <strong>Language</strong> at <code>Global Styles</code>, and the <strong>Style:</strong> box,</p>
<ol>
<li>scroll down to <code>Bookmark Margin</code>, click on <strong>Background Color</strong> and <strong>More Colors</strong>, and set the colors to Red=<code>175</code>, Green=<code>175</code>, Blue=<code>135</code>, then <strong>OK</strong></li>
<li>scroll down to <code>Change History Margin</code>, click on <strong>Background Color</strong> and <strong>More Colors</strong>, and set the colors to Red=<code>175</code>, Green=<code>175</code>, Blue=<code>135</code>, then <strong>OK</strong></li>
</ol>
<p dir="auto">But since there might be other colors missing from yours that might be jarring later, if you haven’t done a lot of color or user-keyword customization, what I recommend is to exit Notepad++, then use Explorer to go to <code>%AppData%\Notepad++\</code>: If there’s a <code>themes\</code> subdirectory, delete <code>khaki.xml</code> from <code>%AppData%\Notepad++\themes\</code>.  When you restart Notepad++, it will use the version of <code>khaki.xml</code> from the installation directory rather than from your AppData hierarchy, )(Notepad++'s installer overwrites the installation\themes*.xml when you install or upgrade, so that one should be up-to-date and include the correct values for those margins.)</p>
<p dir="auto">[those instructions assume you have a “normal installation”, using the <a href="/topic/15740" title="FAQ: What is %AppData%"><code>%AppData%</code> hierarchy</a> for settings and <code>c:\program files\notepad++</code> for your installation directory; if you have a non-standard installation, files will be in a different location, and I’d need to see your full <strong>?</strong>-menu’s <strong>Debug Info</strong> to give customized instructions.]</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104191</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104191</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Fri, 12 Dec 2025 14:43:30 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 12:47:05 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a></p>
<p dir="auto">I also have problems with the styles here, depending on which file was opened (e.g., ps1):</p>
<p dir="auto"><img src="/assets/uploads/files/1765542900205-screenshot-2025-12-12-133421.png" alt="Screenshot 2025-12-12 133421.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">To be safe, I unpacked the portable version on a clean reference system, and the effect was immediately there. So it wasn’t an upgrade. The only style that works is ‘DarkModeDefault’</p>
<p dir="auto">Replacing any files didn’t help. Even if I replace all files except for notepad.exe, nothing changes.</p>
<p dir="auto">It seems there is no way to solve the problem on my part; in any case, I can’t think of any further solution.</p>
<p dir="auto">Have a nice day.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104189</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104189</guid><dc:creator><![CDATA[KleinerDickerTiger]]></dc:creator><pubDate>Fri, 12 Dec 2025 12:47:05 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Fri, 12 Dec 2025 09:34:30 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a> After recent update there is some issue with Theme or Style as now, I see 1 White Column additionally between Margin &amp; Line Number separator. Please see image. It actually makes look like as if something is missing &amp; distracts attention.<img src="/assets/uploads/files/1765532065861-2025-12-12_150207.jpg" alt="2025-12-12_150207.jpg" class=" img-fluid img-markdown" /></p>
]]></description><link>https://community.notepad-plus-plus.org/post/104190</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104190</guid><dc:creator><![CDATA[Saquib Akhtar]]></dc:creator><pubDate>Fri, 12 Dec 2025 09:34:30 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 21:42:31 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/coises" aria-label="Profile: Coises">@<bdi>Coises</bdi></a> said in <a href="/post/104170">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">I wondered why you updated to an out-of-date version…</p>
<p dir="auto">You actually updated to 3.12, in #17242   .</p>
</blockquote>
<p dir="auto">I don’t really understand how/why I did this error.<br />
It’s too late for the release note, but at least it’s fixed in both:<br />
<a href="https://notepad-plus-plus.org/downloads/v8.8.9/" rel="nofollow ugc">https://notepad-plus-plus.org/downloads/v8.8.9/</a><br />
&amp;<br />
<a href="https://community.notepad-plus-plus.org/topic/27298/notepad-v8-8-9-vulnerability-fix">https://community.notepad-plus-plus.org/topic/27298/notepad-v8-8-9-vulnerability-fix</a></p>
<p dir="auto">Thank you for your heads up.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104175</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104175</guid><dc:creator><![CDATA[donho]]></dc:creator><pubDate>Wed, 10 Dec 2025 21:42:31 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 19:17:14 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a> said in <a href="/post/104166">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">if the active theme has a dark background by default I could look up the Default Style’s foreground and background for that theme, and assign those as the foreground and background colors for all new style entries (so that all the new styles will be completely unnoticed by the user, and they won’t ever notice that the feature brought in the new styles).</p>
</blockquote>
<p dir="auto">I think it’s “the way to go”.</p>
<blockquote>
<p dir="auto">So the first makes it jarring, but noticeable; the second won’t be as jarring, but people might not know that they’ve got a lot of new style colors that they could set to their liking to get better highlighting in many languages (and a few new GUI colors).</p>
</blockquote>
<p dir="auto">The reason of  “the way to go” is, if users don’t need to change anything, just let these features sleep.<br />
As I said, a good tool is a tool transparent: user opens it, get jobs done, then closes it, without noticing or being bothered by anything unsual.</p>
<blockquote>
<p dir="auto">I could change it to the second: it’s a bit more effort, but it’s doable.</p>
</blockquote>
<p dir="auto">Thank you. Then it’ll be in the next release.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104174</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104174</guid><dc:creator><![CDATA[donho]]></dc:creator><pubDate>Wed, 10 Dec 2025 19:17:14 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 19:15:33 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a><br />
Oh my… BIG sorry…</p>
<p dir="auto">My Theme’s file size changed and my “first” load, however, displayed the “default” style and this confused/shocked me!<br />
I copied over a backup of my Theme, the file size changed again, but now it works…</p>
<p dir="auto">All fine now, it seems.<br />
Sorry for my false positive!</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104173</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104173</guid><dc:creator><![CDATA[fuba82]]></dc:creator><pubDate>Wed, 10 Dec 2025 19:15:33 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 19:09:00 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/fuba82" aria-label="Profile: fuba82">@<bdi>fuba82</bdi></a> said in <a href="/post/104171">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">My own theme file is overwritten every time I load it…<br />
This just happens since Notepad++ was updated to 8.8.9.</p>
</blockquote>
<p dir="auto">Could you be more specific?  v8.8.9 should <em>update</em> your theme to include any styles it is missing, but it does not delete any of your customizations.</p>
<p dir="auto">But just to make sure, please explain in detail what your problem is: is your “own theme” just a customized version of one of the built-in themes?  Do you put it in the AppData hierarchy, or in the Program Files hierarchy?  Could you share your Debug Info?  If it’s losing any of your custom colors that you’ve defined, could you show us the “before” and “after” – the whole file is too big to paste here, obviously… but if you can show us the section where your information was <em>lost</em> (so show what it was in the old theme, and then what it became in the overwritten theme), that would be helpful.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104172</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104172</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Wed, 10 Dec 2025 19:09:00 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 19:17:01 GMT]]></title><description><![CDATA[<p dir="auto"><s>Hi there, same bug here!</s></p>
<p dir="auto"><s>My own theme file is overwritten every time I load it…</s><br />
<s>This just happens since Notepad++ was updated to 8.8.9.</s></p>
<p dir="auto"><s>It worked flawless 8.8.9!</s><br />
<s>Means my own theme does no longer work with 8.8.9?</s></p>
<p dir="auto">Nevermind, it works now!<br />
Sorry for bothering you!</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104171</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104171</guid><dc:creator><![CDATA[fuba82]]></dc:creator><pubDate>Wed, 10 Dec 2025 19:17:01 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 18:51:11 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/donho" aria-label="Profile: donho">@<bdi>donho</bdi></a> said in <a href="/post/104147">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">Update to nlohman json 3.11.3. (Update #15041 )</p>
</blockquote>
<p dir="auto">I wondered why you updated to an out-of-date version…</p>
<p dir="auto">You actually updated to 3.12, in <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/pull/17242" rel="nofollow ugc">#17242</a>.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104170</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104170</guid><dc:creator><![CDATA[Coises]]></dc:creator><pubDate>Wed, 10 Dec 2025 18:51:11 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 18:38:22 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/peterjones" aria-label="Profile: PeterJones">@<bdi>PeterJones</bdi></a> said in <a href="/post/104168">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/denny-89" aria-label="Profile: Denny-89">@<bdi>Denny-89</bdi></a> said in <a href="/post/104167">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">stylers.xml surprisingly stayed the same old version.</p>
</blockquote>
<p dir="auto">Not surprising, to me.  The new feature updates the just the active theme, so if you’ve got any theme other than <code>Default (stylers.xml)</code> chosen, any changes will have been saved in the <code>themes\XYZ.xml</code>  file, not in <code>stylers.xml</code>.  Since you are using one of the dark themes, you would have to look at that theme’s file for the change date, not <code>stylers.xml</code>.</p>
</blockquote>
<p dir="auto">Thank you. I didn’t know the default dark theme is treated like a custom theme instead as a native color scheme like in other light/dark mode software, so i didn’t check the Style Configurator menu.</p>
<p dir="auto">First i’ve changed just the history margin color, but then just decided to replace the whole themes folder with the one from 8.8.9 portable because there may be even more changes since May 2021 when my old DarkModeDefault.xml was created.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104169</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104169</guid><dc:creator><![CDATA[Denny-89]]></dc:creator><pubDate>Wed, 10 Dec 2025 18:38:22 GMT</pubDate></item><item><title><![CDATA[Reply to Notepad++ v8.8.9: Vulnerability-fix on Wed, 10 Dec 2025 17:16:27 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/denny-89" aria-label="Profile: Denny-89">@<bdi>Denny-89</bdi></a> said in <a href="/post/104167">Notepad++ v8.8.9: Vulnerability-fix</a>:</p>
<blockquote>
<p dir="auto">stylers.xml surprisingly stayed the same old version.</p>
</blockquote>
<p dir="auto">Not surprising, to me.  The new feature updates the just the active theme, so if you’ve got any theme other than <code>Default (stylers.xml)</code> chosen, any changes will have been saved in the <code>themes\XYZ.xml</code>  file, not in <code>stylers.xml</code>.  Since you are using one of the dark themes, you would have to look at that theme’s file for the change date, not <code>stylers.xml</code>.</p>
]]></description><link>https://community.notepad-plus-plus.org/post/104168</link><guid isPermaLink="true">https://community.notepad-plus-plus.org/post/104168</guid><dc:creator><![CDATA[PeterJones]]></dc:creator><pubDate>Wed, 10 Dec 2025 17:16:27 GMT</pubDate></item></channel></rss>