The vulnerability comes from the way Notepad handles Markdown hyperlinks. Attackers craft malicious .md files with embedded ...
Microsoft has patched a remote code execution (RCE) flaw in Windows 11 Notepad which could have allowed threat actors to run malware locally without the OS prompting the user at all.
Clicking the malicious links could launch "unverified protocols." ...