Repository navigation

#

sandbox-escape

Full exploit chain (CVE-2019-11708 & CVE-2019-9810) against Firefox on Windows 64-bit.

JavaScript
621
5 年前

Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.

Python
325
4 年前

PoC for CVE-2022-28281 a Mozilla Firefox Out of bounds write.

HTML
74
3 年前

Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox escape, kernel-level access, and device bricking. Triggered via iMessage, it enables full compromise with no user interaction.

10
2 天前

This is a POC of a sandbox escape by found by Siguza. Works up to iOS 13.4.1.

Objective-C
5
5 年前

Tribell Edge Sandbox Escape - PoCs of Edge's legacy vulnerabilities BadgeUpdateManager / TileFlyoutUpdateManager / ToastNotificationManager to exploit cross-boundary XmlDocument sharing and escape Edge’s LPAC sandbox (CVE-2019-0555).

JavaScript
4
2 个月前

All credits to wannacry :)

C#
1
2 年前

A simple lab created for testing CSTI vulnerability in AngularJS version 1.0.8, 1.3.20 and 1.5.8 using Sandbox Escape.

PHP
0
4 年前