There's a remote code execution vulnerability in Notepad which is leveraged via the recently introduced formatting abilities to make tables in the app.
High-severity flaw fixed in Windows 11 Notepad ...
A command injection flaw in the Windows Notepad App now gives remote attackers a path to execute code over a network, turning ...
The flaw exploits Notepad’s recently added support for Markdown, a formatting language used on websites and in files, to run malicious code on a Windows PC.