A command injection flaw in the Windows Notepad App now gives remote attackers a path to execute code over a network, turning ...
Clicking the malicious links could launch "unverified protocols." ...
The vulnerability comes from the way Notepad handles Markdown hyperlinks. Attackers craft malicious .md files with embedded links that trigger unverified protocol handlers when users click them, ...