CVE-2025-15556 | Notepad++ up to 8.8.8 WinGUp updater code download (EUVD-2025-206661 / CNNVD-202602-526)
A vulnerability described as problematic has been identified in Notepad++ up to 8.8.8. Affected by this vulnerability is an unknown functionality of the component WinGUp updater. Such manipulation leads to download of code without integrity check.
This vulnerability is listed as CVE-2025-15556. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.