Live data from Hacker News

Windows Notepad App Remote Code Execution Vulnerability

msrc.microsoft.com

1–5 of 5 posts

Re: Windows Notepad App Remote Code Execution Vulnerability

#3
post #2

it is bizarre that a notepad app can have remote code execution. how much unnecessary function did MS add to get to this point?

Things started to go downhill when it stopped being a .exe in System32 and started being distributed through the MS Store. They've escalated from spell check and tabs to full rich text formatting (remember WordPad?) and Copilot. But this vulnerability stems from links in Markdown documents, so I guess they're well on their way to embedding most of a web browser as they rediscover all the security implications.