MS Paint remote code execution vulnerability disclosed, requires user to open crafted file

dyn___ · x · 2026-09-10

A remote code execution vulnerability in Microsoft Paint has been disclosed. The attack requires a user to open a specially crafted attacker file to initiate RCE — a surprising flaw in a decades-old bundled app.

Original post →

More from Safety

Safety channel →