CISA Alerts on Active Exploitation of Notepad++ RCE Flaw CVE-2025-15556

CISA Alerts on Active Exploitation of Notepad++ RCE Flaw CVE-2025-15556

First seen 14 Feb 2026, 15:09 UTC CybersecuritynewsThe420.In 57.2

Article Content

Browse articles
ThreatCluster

CISA has identified a critical remote code execution vulnerability (CVE-2025-15556) in Notepad++, which is actively being exploited. Federal agencies are required to apply patches by March 5, 2026, following its addition to the Known Exploited Vulnerabilities catalog on February 12, 2026.

Timeline

2026-02-03
CVE-2025-15556 published
2026-02-09
First public PoC released
2026-02-12
CVE-2025-15556 added to CISA KEV catalog
2026-02-14
CISA issues warning on active exploitation