top | item 24555242 (no title) axelf4 | 5 years ago > It's bloat which increases the browser's attack surface.AFAICT PDF.js is just another JavaScript application and thus as sandboxed as any other website. discuss order hn newest est31|5 years ago It's a js application and thus less exploitable than your average C application with tons of unsound code, but IIRC it belongs to the class of "privileged js" layer that Firefox has, so has special rights that usual website js doesn't have.
est31|5 years ago It's a js application and thus less exploitable than your average C application with tons of unsound code, but IIRC it belongs to the class of "privileged js" layer that Firefox has, so has special rights that usual website js doesn't have.
est31|5 years ago