User avatar
nixCraft 🐧 @nixCraft@mastodon.social
1d
Actively exploited sandbox RCE in all Chromium versions: Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High) nvd.nist.gov/vuln/detail/cve-2026-85046

So you don't even need a JS? just a crafted HTML page? Lmao. So much bloated code running and on top of that now we have an AI generated code. Security is gonna be a nightmare for most people
9
3
1
0
User avatar
Alessio Vanni @vanni@mibl.vannilla.org
1d
@nixCraft
Remember when Google and Mozilla claimed the browser needed a multi-process architecture because it was more secure?
1
0
0
0
User avatar
illy [Shrimple-mode] protomoji_orange_flag_lesbian @illyBytes@shrimp.imsofucking.gay
1d
@vanni @nixCraft how is type confusion related to multithreading???
1
0
0
0
User avatar
Alessio Vanni @vanni@mibl.vannilla.org
1d
@illyBytes @nixCraft
Multi-threading ≠ multi-process.
1
0
0
0
User avatar
illy [Shrimple-mode] protomoji_orange_flag_lesbian @illyBytes@shrimp.imsofucking.gay
1d
@vanni @nixCraft yk what i meant 😭
0
0
0
0