CVE-2026-23512

Source
https://cve.org/CVERecord?id=CVE-2026-23512
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23512.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-23512
Aliases
  • GHSA-rqg5-gj63-x4mv
Published
2026-01-14T20:31:08.724Z
Modified
2026-02-04T21:33:44.332464Z
Severity
  • 8.6 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H CVSS Calculator
Summary
SumatraPDF has an Untrusted Search Path in sumatrapdf/src/AppTools.cpp
Details

SumatraPDF is a multi-format reader for Windows. In 3.5.2 and earlier, there is a Untrusted Search Path vulnerability when Advanced Options setting is trigger. The application executes notepad.exe without specifying an absolute path when using the Advanced Options setting. On Windows, this allows execution of a malicious notepad.exe placed in the application's installation directory, leading to arbitrary code execution.

Database specific
{
    "cna_assigner": "GitHub_M",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23512.json",
    "cwe_ids": [
        "CWE-426"
    ]
}
References

Affected packages

Git / github.com/sumatrapdfreader/sumatrapdf

Affected ranges

Type
GIT
Repo
https://github.com/sumatrapdfreader/sumatrapdf
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

1.*
1.4split
1.5split
1.6split
1.7split
1.8split
1.9split
2.*
2.0split
2.1split
2.2split
2.3split
2.4split
2.5split
3.*
3.0split
3.1.2rel
3.2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23512.json"
vanir_signatures
[
    {
        "id": "CVE-2026-23512-47d12c73",
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "118880975342551816882512087630849818015",
                "60412665186280559190982604082183658794",
                "264079631790783270930918253419173896806",
                "314139454683080063364741418808958773710",
                "29322729547620743003210804099758964416",
                "179452061664906707167152268343813139887",
                "235621871071294353212092634654478334226",
                "264272954219982348703238878777654148766"
            ]
        },
        "signature_version": "v1",
        "source": "https://github.com/sumatrapdfreader/sumatrapdf/commit/2762e02a8cd7cb779c934a44257aac56ab7de673",
        "target": {
            "file": "src/AppTools.cpp"
        },
        "deprecated": false
    }
]