InterIUT 2026 – MilSec Utils (2/2)
TL;DR: RCE through vm2 sandbox escape
TL;DR: RCE through vm2 sandbox escape
TL;DR: XSS via HTML entity double-parse and CSP bypass via PHP warning
TL;DR: RCE via data: URI injection in import() and node permission bypass via inspector API
TL;DR: XSS via path traversal chained with arbitrary file write through PHP session upload progress