Ghostscript exploit chain pops KDE file manager for unsandboxed RCE from one link click

moyix · x · 2026-09-26

Researcher v12sec published a PoC chaining Ghostscript memory-corruption exploits: a single link click in Chrome downloads a file, and KDE's file manager opening it yields unsandboxed RCE. The author calls it the "full chain from temu."

Original post →

More from Safety

Safety channel →