Security Advisory: Notepad++ CVE-2025-15556 (Actively Exploited)
DataComm is monitoring CVE-2025-15556, a vulnerability affecting Notepad++ (versions prior to 8.8.9) when using the WinGUp auto-updater. The issue stems from insufficient update integrity verification, meaning an attacker who can intercept or redirect update traffic could potentially trick systems into installing a malicious update, leading to arbitrary code execution with the user’s privileges. We recommend organizations upgrade Notepad++ to v8.8.9 or later and validate that endpoints are no longer running vulnerable versions, especially in managed environments where Notepad++ is widely deployed.