Host text selection & vm isolation

Host: Pop!_OS 20.04
Vm: Kubuntu 20.04 in virt-manager

If I select some text on a tor browser on the host os, the vm can actually read the text.
Klipper can help demonstrating that.

I am terrified by the security implications of this.
How does text selection work on linux?
Is there anything I could do to change this behavior?

Well this seems to be the result of Xorg primary selection, which cannot be disabled or locked to a static value null. Even if it could that would break functionality on many applications.
A workaround seems to be VNC or the XML argument for SPLICE.
I was hoping for a solution that allowed copy-paste without select-paste, this will take a lot more research.

After a lot of digging a solution is Wayland, because it handles text selection and clipboard in a different way.