Notepad++ v8.9.8 Release Candidate
-
Notepad++ 8.9.8 Release Candidate is available here:
https://github.com/donho/notepad-plus-plus/releases/tag/ReleaseCandidateNotepad++ v8.9.8 vulnerability fixes, bug-fixes & new enhancements:
- Vulnerabilty: Fix an eventual crash while loading UDL. CVE ID not assigned yet
- Vulnerabilty: Fix an eventual crash when loading a UTF-16 file. CVE ID not assigned yet
- Vulnerabilty: Fix out-of-bounds array write. CVE ID not assigned yet
- Vulnerabilty: Fix authenticode verification bypass. CVE ID not assigned yet
- Vulnerabilty: Fix a TOCTOU issue in the Notepad++ Updater (WinGUp). CVE ID not assigned yet
- Vulnerabilty: Fix session backup path-traversal allowing deletiion outside backup directory. CVE ID not assigned yet
- Vulnerabilty: Fix potential exposure of Windows login info (SMB/NTLM) via UNC path. CVE ID not assigned yet 1, CVE ID not assigned yet 2, CVE ID not assigned yet 3, CVE ID not assigned yet 4
- Vulnerabilty: Fix shortcuts.xml HMAC bypass via the “Run a Macro Multiple Times”. CVE ID not assigned yet
- Vulnerabilty: Fix Null pointer in NPPM_SAVESESSION handler causing crash. CVE ID not assigned yet
- Vulnerabilty: Fix stack buffer overflow caused by overlong session paths. CVE ID not assigned yet
- Vulnerabilty: Fix Folder as Workspace “Run by system” target hijacking issue. CVE ID not assigned yet
- Fix crash in WM_COPYDATA COPYDATA_PARAMS for invalid payload. (Fix #18207)
- Fix crash in API NPPM_ALLOCATE* calls. (Fix #18222)
- Fix CJK IME issues in Save As dialog. (Fix #11582, #15431, #16772, #12225, #12366)
- Update to Scintilla 5.6.6 & Lexilla 5.5.3. (Implement #18290)
- Add plugin deactivation capability. (Fix #18206)
- Add “-monitoringMode” command line argument to open files with monitoring enabled. (Fix #18188)
- Fix Proxy Settings issue in portable mode. (Fix #13382)
- Fix langs.xml model update not not applying file extension fields. (Fix #18220)
- Fix luminosity slider in ChooseColor not visible in dark mode. (Fix #12451)
- Fix empty sub-menus in compact language menu. (Fix #18202)
- Fix Search Results vertical scrolling not matching with OS mouse settings. (Implement #18194)
- Use modern question mark icon in dark message box. (Fix Repported in comment)
- Format count numbers using current locale separators when needed. (Fix #18190)
Please note that all the vulnerability links might not be accessible for the moment. They will be published once the release is available. -
D donho pinned this topic
Hello! It looks like you're interested in this conversation, but you don't have an account yet.
Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.
With your input, this post could be even better 💗
Register Login