← Back

Scintilla

scintilla

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Scintilla
scintilla

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Notepad Plus Plus
Scintilla
2Notepad++
Scintilla
Nov 21, 2024
Sep 14, 2019
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
SciLexer.dll in Scintilla in Notepad++ (x64) before 7.7 allows remote code execution or denial of service via Unicode characters in a crafted .ml file.
2Notepad++
Scintilla
2Notepad++
Scintilla
Apr 23, 2026
May 14, 2007
N/A· v4
N/A· v3
7.6 HIGH· v2
Stack-based buffer overflow in LexRuby.cxx (SciLexer.dll) in Scintilla 1.73, as used by notepad++ 4.1.1 and earlier, allows user-assisted remote attackers to execute arbitrary code via certain Ruby (.rb) files with long...Show more
Stack-based buffer overflow in LexRuby.cxx (SciLexer.dll) in Scintilla 1.73, as used by notepad++ 4.1.1 and earlier, allows user-assisted remote attackers to execute arbitrary code via certain Ruby (.rb) files with long lines. NOTE: this was originally reported as a vulnerability in notepad++.Show less