Reported over three years ago and allegedly still not properly fixed, the vulnerability enables attacks to execute JavaScript ...
SquareX released critical research exposing a hidden API in Comet that allows extensions in the AI Browser to execute local commands and gain full control over users’ devices. The research reveals ...