This issue was addressed with improved environment sanitization. This issue is fixed in macOS Monterey 12.4. A sandboxed process may be able to circumvent sandbox restrictions.
No PoCs from references.
- https://github.com/houjingyi233/macOS-iOS-system-security