The issue allowed attackers to "execute arbitrary code inside a sandbox".
Threat actors are now abusing DNS queries as part of ClickFix social engineering attacks to deliver malware, making this the first known use of DNS as a channel in these campaigns.