You Won't Believe what this One Line Change Did to the Chrome Sandbox
https://googleprojectzero.blogspot.com/2020/04/you-wont-believe-what-this-one-line.html
From reading this article it would appear MS has already implemented a fix:
This vulnerability was fixed in April 2020 as CVE-2020-0981.
https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2020-0981
Yes, but unfortunately the basic problem persists...
The good news is Forshaw alerted Microsoft to the problem and the company issued a patch (CVE-2020-0981) to fix it. That said, the fundamental flaw Forshaw identified remains: the security of Google Chrome on Windows 10 depends on Microsoft and that cannot be changed. It's important to point out that other Chromium-based browsers suffer the same risk (Opera, Brave, Microsoft's new Edge browser), and that means you may tempted to quit Windows 10 if you are more wedded to your browser than your operating system.
Well that for me just confirms what I said, how can the problem still exist if the CVE-2020-0981 (that they have mentioned twice now) was released in the April 2020 updates.
MS issued a fix(CVE-2020-0981) and your additional comments just conforms this (Forshaw reported this and confirms the same (CVE-2020-0981) fix. This is just sort of recycling old news, so that exploit shouldn't be possible if said browser sandboxes that use the win10 sandbox token/s.
As for their comment "if you are tempted to quit windows10," what the hell are they suggesting as a replacement, nothing it would seem.