Windows 11 Notepad flaw let files execute silently via Markdown links

Bleeping Computer
by Lawrence Abrams
February 11, 2026
Microsoft has fixed a "remote code execution" vulnerability in Windows 11 Notepad that allowed attackers to execute local or remote programs by tricking users into clicking specially crafted Markdown links, without displaying any Windows security warnings.
Verticals
securitytech
Originally published on Bleeping Computer on 2/11/2026