Google Chrome JS Execution Use-After-Free

JS execution inside ScriptForbiddenScope can lead to a use-after-free condition in Google Chrome.

Leave a Reply