Can clipboard content be exploited to run code? Something like a special OS string that escapes clipboard?
Also, is there a way to patch this Chrome "feature"?
Also, is there a way to patch this Chrome "feature"?
The user’s wallet software can detect these by warning the user that the contract address is unknown or never before seen by them.
Besides this is irrelevant. Websites have always been able to do what you're describing, because copying is a gesture. This bug doesn't change that.