Notepad's new Markdown powers served with a side of RCE

This title could be clearer and more informative.Try out Clickbait Shieldfor free (5 uses left this month).

Microsoft patched CVE-2026-20841, a remote code execution vulnerability in Notepad's Markdown feature that scores 8.8 severity. The flaw requires social engineering—tricking users into opening a malicious Markdown file and clicking an embedded link—which then executes unverified protocols with user permissions. No wild

3m read timeFrom go.theregister.com
Post cover image

Sort: