CVE-2024-9394 — An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin. This could allow them to access cross-origin JSON content. This acc — CVE Database · The Intelligence Room