2 ms·
V8 also has its own sandbox, which I believe exists in that sandbox. I assume that's the one this exploit has RCE in, but its unclear. https://chromium.googles
by Genwald 1mo ago
V8 also has its own sandbox, which I believe exists in that sandbox. I assume that's the one this exploit has RCE in, but its unclear.
https://chromium.googlesource.com/v8/v8.git/+/refs/heads/main/src/sandbox/README.md https://chromium.googlesource.com/v8/v8.git/+/refs/heads/mai...
- insanitybit 1mo agoI would assume in this case that there's full renderer control, not just a bypass of the in-process isolation.