<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Notepad++ v8.9.8 Release Candidate]]></title><description><![CDATA[<p dir="auto"><strong>Notepad++ 8.9.8 Release Candidate is available here:</strong><br />
<a href="https://github.com/donho/notepad-plus-plus/releases/tag/ReleaseCandidate" rel="nofollow ugc">https://github.com/donho/notepad-plus-plus/releases/tag/ReleaseCandidate</a></p>
<p dir="auto"><strong>Notepad++ v8.9.8 vulnerability fixes, bug-fixes &amp; new enhancements:</strong></p>
<ol>
<li>Vulnerabilty: Fix an eventual crash while loading UDL. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-5h8p-vvcf-xq8p" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix an eventual crash when loading a UTF-16 file. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-8jjh-4rq6-r2h8" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix out-of-bounds array write. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-h2wq-6x75-h8q2" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix authenticode verification bypass. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-cx87-7hhq-m2j3" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix a TOCTOU issue in the Notepad++ Updater (WinGUp). <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-hrvm-8rjc-v44x" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix session backup path-traversal allowing deletiion outside backup directory. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-hgmx-cr7v-p3c7" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix potential exposure of Windows login info (SMB/NTLM) via UNC path. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-fw3m-3qpq-pvr8" rel="nofollow ugc">CVE ID not assigned yet 1</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-qmmp-22w3-mcwm" rel="nofollow ugc">CVE ID not assigned yet 2</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-rv8g-c295-pwcg" rel="nofollow ugc">CVE ID not assigned yet 3</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-7w2m-5769-p4q3" rel="nofollow ugc">CVE ID not assigned yet 4</a></li>
<li>Vulnerabilty: Fix shortcuts.xml HMAC bypass via the “Run a Macro Multiple Times”. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-759j-g8j4-867p" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix Null pointer in NPPM_SAVESESSION handler causing crash. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-j85c-6wc9-p98p" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix stack buffer overflow caused by overlong session paths. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-pxgg-96p2-c3hx" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Vulnerabilty: Fix Folder as Workspace “Run by system” target hijacking issue. <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/security/advisories/GHSA-w5xq-frjg-w4cw" rel="nofollow ugc">CVE ID not assigned yet</a></li>
<li>Fix crash in WM_COPYDATA COPYDATA_PARAMS for invalid payload. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18207" rel="nofollow ugc">#18207</a>)</li>
<li>Fix crash in API NPPM_ALLOCATE* calls. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18222" rel="nofollow ugc">#18222</a>)</li>
<li>Fix CJK IME issues in Save As dialog. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/11582" rel="nofollow ugc">#11582</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/15431" rel="nofollow ugc">#15431</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/16772" rel="nofollow ugc">#16772</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/12225" rel="nofollow ugc">#12225</a>, <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/12366" rel="nofollow ugc">#12366</a>)</li>
<li>Update to Scintilla 5.6.6 &amp; Lexilla 5.5.3. (Implement <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18290" rel="nofollow ugc">#18290</a>)</li>
<li>Add plugin deactivation capability. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18206" rel="nofollow ugc">#18206</a>)</li>
<li>Add “-monitoringMode” command line argument to open files with monitoring enabled. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18188" rel="nofollow ugc">#18188</a>)</li>
<li>Fix Proxy Settings issue in portable mode. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/13382" rel="nofollow ugc">#13382</a>)</li>
<li>Fix langs.xml model update not not applying file extension fields. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18220" rel="nofollow ugc">#18220</a>)</li>
<li>Fix luminosity slider in ChooseColor not visible in dark mode. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/12451" rel="nofollow ugc">#12451</a>)</li>
<li>Fix empty sub-menus in compact language menu. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18202" rel="nofollow ugc">#18202</a>)</li>
<li>Fix Search Results vertical scrolling not matching with OS mouse settings. (Implement <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18194" rel="nofollow ugc">#18194</a>)</li>
<li>Use modern question mark icon in dark message box. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/10171#issuecomment-4988491539" rel="nofollow ugc">Repported in comment</a>)</li>
<li>Format count numbers using current locale separators when needed. (Fix <a href="https://github.com/notepad-plus-plus/notepad-plus-plus/issues/18190" rel="nofollow ugc">#18190</a>)</li>
</ol>
<p dir="auto"><code>Please note that all the vulnerability links might not be accessible for the moment. They will be published once the release is available.</code></p>
]]></description><link>https://community.notepad-plus-plus.org/topic/27630/notepad-v8.9.8-release-candidate</link><generator>RSS for Node</generator><lastBuildDate>Fri, 14 Aug 2026 17:07:43 GMT</lastBuildDate><atom:link href="https://community.notepad-plus-plus.org/topic/27630.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 14 Aug 2026 13:12:24 GMT</pubDate><ttl>60</ttl></channel></rss>