Use after free in Webstore API in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to install a malicious extension and convinced a user to enage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/oz9un/Exploitable_KB_Finder