Hopefully it doesn’t have any Remote Code Execution vulnerabilities, like Microslop’s implementation had.
How in the world did they manage that? Did they implement it internally as a TCP API and expose it?
I don’t know the technicalities, but Markdown supports links, and it’s possible to craft a link that downloads a file and then executes it. You can look up the Notepad.exe RCE vulnerability from this year.
Basically Notepad would pass the link to ShellEx and could launch executables.
They probably vibe coded it, and only copilot reviewed and merged the code.
I really hate that every markdown engine has its own flavor and I hope for a better standardization.
There is commonmark but it is lacking features like tables. https://commonmark.org/
Yes, it’s a nice, easy and elegant system, but lacks still a lot of possibilities included in the BBcode.
I’ve been using markdown and I don’t even know. Sounds like a great addition.
To lemmy like me. Markdown is another way of formatting text. It’s like the R*ddit or lemmy way of formatting.
About time too!
I plan to export all the company documentation to markdown for git/bazaar based version control ! It is just so exciting 🥳😁
deleted by creator







