Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.97 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.
No PoCs from references.
- https://github.com/Live-Hack-CVE/CVE-2020-6495