Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
ID: 55e0c70a-f8a9-5388-be23-c6b0d9ba0432
STIX ID: report--55e0c70a-f8a9-5388-be23-c6b0d9ba0432
Feed Name: CISecurity.org Advisories
Multiple vulnerabilities were identified in Google Chrome— including V8 type confusion (CVE-2025-1920, CVE-2025-2135), an out-of-bounds write in the GPU (CVE-TBD), a use-after-free in Inspector (CVE-2025-2136), and an out-of-bounds read in V8 (CVE-2025-2137). Successful exploitation could allow arbitrary code execution in the context of the logged-on user, enabling installation of programs, data access/modification, or account creation depending on user privileges. The report maps the issue to the ATT&CK tactic Initial Access and the Drive-By Compromise technique.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
