schema_element defeats protective search_path changes; It was found that certain database calls in PostgreSQL could permit an authed attacker with elevated database-level privileges to execute arbitrary code.
https://github.com/janderik/vuln-forge
https://github.com/arsalan-khan-dev/VulnScan-Pro
https://www.postgresql.org/support/security/CVE-2023-2454/