CVE-2026-23512: SumatraPDF has an Untrusted Search Path in sumatrapdf/src/AppTools.cpp
SumatraPDF is a multi-format reader for Windows. In 3.5.2 and earlier, there is a Untrusted Search Path vulnerability when Advanced Options setting is trigger. The application executes notepad.exe without specifying an absolute path when using the Advanced Options setting. On Windows, this allows execution of a malicious notepad.exe placed in the application's installation directory, leading to arbitrary code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23512?
CVE-2026-23512 is classified as a medium severity vulnerability due to its potential for exploitation through an untrusted search path.
How do I fix CVE-2026-23512?
To fix CVE-2026-23512, update SumatraPDF to version 3.5.3 or later where this vulnerability is addressed.
What are the risks associated with CVE-2026-23512?
The risks associated with CVE-2026-23512 include the potential execution of arbitrary code if an attacker manipulates the search path.
Which versions of SumatraPDF are affected by CVE-2026-23512?
CVE-2026-23512 affects SumatraPDF versions 3.5.2 and earlier.
Is there a workaround for CVE-2026-23512?
A temporary workaround for CVE-2026-23512 is to avoid using the Advanced Options setting until an update is applied.