1013
A remote code execution vulnerability has been found in Microslop Notepad
(msrc.microsoft.com)
This is a most excellent place for technology news and articles.
It sounds like a link can be a file path and clicking the link just opens the file. If that's the case, this is effectively the same risk as filesystem shortcuts.
Or the same risk as just clicking on random links.