CVE-2026-3008 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
April 27, 2026
Last Seen
April 28, 2026

CVE-2026-3008 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 5 intelligence report mentions.

CVE-2026-3008 is a vulnerability tracked across 1 threat cluster and 5 intelligence report mentions on ThreatCluster. First observed April 27, 2026; most recent activity April 28, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Notepad++ Releases 8.9.4 Patch to Fix String Injection Vulnerability (CVE-2026-3008) in 8.9.3 — Thecyberexpress · April 28, 2026
  • Notepad++ Vulnerability Lets Attackers Crash App and Expose Memory Data — Gbhackers · April 28, 2026
  • Notepad++ Vulnerability Allows Attackers to Crash Application, Leak Memory Data — Cybersecuritynews · April 27, 2026
  • Cve 2026 3008 — llgsjsm.github.io · April 27, 2026
  • Vulnerability in Notepad++ — Csa.Sg · April 27, 2026

Frequently asked questions

What is CVE-2026-3008?

CVE-2026-3008 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 5 intelligence report mentions.

Is CVE-2026-3008 still active?

The most recent intelligence report mentioning CVE-2026-3008 on ThreatCluster is dated April 28, 2026. Activity was first observed April 27, 2026, giving a tracked span from then to April 28, 2026.

What is CVE-2026-3008 associated with?

Across ThreatCluster reporting, CVE-2026-3008 most frequently co-occurs with Data Breach, DDoS, Zero-day Exploit, Cwe-134 - Use Of Externally-Controlled Format String, CWE-94 - Code Injection, among 9 tracked related entities.

What are the latest developments involving CVE-2026-3008?

The most significant recent cluster is “Critical Vulnerability in Notepad++ Allows DoS and Memory Disclosure” (6 articles · Updated April 27, 2026). CVE-2026-3008 appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on CVE-2026-3008?

CVE-2026-3008 appears in 5 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown