A reported sandbox-escape chain in a Windows AI client shows how one local foothold can push past VM boundaries and make outbound controls far less meaningful.
A now-patched ChatGPT flaw shows how path traversal and guardrail bypasses can turn a sandboxed file feature into a sensitive-information risk.
A patched ChatGPT guardrail-bypass issue shows how file handling, path logic, and access control can matter more than the model itself.
A critical flaw class in Cursor shows how a helpful coding assistant can become a route from untrusted text to operating-system code execution.