Microsoft fixes Notepad flaw that would trick customers into clicking malicious Markdown hyperlinks


Microsoft has mounted a severe safety vulnerability affecting Markdown recordsdata in Notepad. Within the firm’s Tuesday patch notes, Microsoft says a nasty actor may perform a distant code execution assault by tricking customers “into clicking a malicious hyperlink inside a Markdown file opened in Notepad,” as reported earlier by The Register.

Clicking the hyperlink would “launch unverified protocols,” permitting attackers to remotely load and execute malicious recordsdata on a sufferer’s laptop, based on the patch notes. Microsoft says there isn’t any proof of attackers exploiting the Notepad vulnerability (CVE-2026-20841) within the wild, nevertheless it issued a repair for the flaw in its Tuesday patch.

Microsoft initially added assist for Markdown, a plaintext formatting language, to Notepad on Home windows 11 final Might. The transfer contributed to criticism that Microsoft is filling its working system with bloatware, together with by stuffing new options and AI capabilities into apps like Notepad and Paint.

Notepad isn’t the one textual content editor that has confronted safety points not too long ago, because the third-party Notepad++ app disclosed that some customers could have downloaded a malicious replace linked to Chinese language state-sponsored attackers.



Source link

Related articles

Ethereum’s RSI Simply Hit Its Lowest Stage In Historical past, And That Might Be Precisely The Level

Ethereum’s newest value crash has pushed the cryptocurrency beneath $1,800, inserting its month-to-month chart beneath stress at a time when the complete crypto market sentiment has turned closely bearish. There's additionally one other...

I requested ChatGPT to revive a picture. It produced a unadorned man with a fish head

In 2024, again when the AI picture fever was catching on, Google launched the Pixel Studio app. It was meant to be a joyful playground the place you might deliver your creativeness to...

Saylor Sparks Bitcoin Purchase Buzz After Technique’s Uncommon BTC Sale

Key TakeawaysSaylor’s publish redirected consideration towards Technique’s bitcoin accumulation strategy after a uncommon sale.Technique nonetheless holds 843,706 BTC, conserving MSTR intently linked to bitcoin value swings.Buyers are watching whether or not future purchases,...

Iran weekend information: OPEC+ continues the charade, negotiations seem caught, Beirut hit

OPEC+ and OPEC proceed to undergo the motions with the quota conferences regardless of the Strait of Hormuz.OPEC+ introduced it would increase its quota by 188K bpd for July with one other assembly...

BOURBON faucets Subsea7 veteran Olivier Blaringhem as CEO

(WO) — Offshore providers supplier BOURBON has appointed Olivier Blaringhem as chief govt officer, efficient Sept. 14, 2026, succeeding Gaël Bodénès, who has led the corporate since 2017.  Blaringhem brings greater than 25 years...
spot_img

Latest articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

WP2Social Auto Publish Powered By : XYZScripts.com