1.
Full RCE on Element Desktop achieved by chaining iframe injection, Electron misconfigurations, and a V8 exploit to escape the sandbox and reach Node.js APIs from a compromised subframe.
Skip to content
Curated 1 security research writeups, vulnerability advisories and exploitation analyses for CVE-2022-23597.