A security researcher discovered a vulnerability in macOS, specifically in the TextEdit application, which allows attackers to execute HTML code within a TXT file, potentially leading to file leaks and other malicious activities. The vulnerability, known as CVE-2019-8761, was reported to Apple in 2019 and has since been patched. The researcher found that by tricking TextEdit into parsing HTML code in a TXT file, an attacker can inject malicious code and potentially steal sensitive information. The vulnerability highlights the importance of being cautious when opening files from unknown sources, even if they appear to be harmless TXT files.