> An attacker controlling another terminal
How about controlling not another, but the same root terminal via send keys without tmux with another xorg terminal window?
How about controlling not another, but the same root terminal via send keys without tmux with another xorg terminal window?
You do appear to be correct that it's exploitable via other, also trivial, means. That does not make the situation any less bad.
That should be absolutely no one.