OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=35038
Crash type: Use-after-poison READ 8
Crash state:
AK::NonnullOwnPtr<JS::IndexedPropertyStorage>::operator->
JS::IndexedProperties::array_like_size
JS::IndexedProperties::append