logo

A Vulnerability in Google Chrome Could Allow for Arbitrary Code Execution

ID: a1da1ead-43a0-503b-ac4b-6414acd78592

STIX ID: report--a1da1ead-43a0-503b-ac4b-6414acd78592

Feed Name: CISecurity.org Advisories

Threat Score
70/100

Date Published: 2025-05-15

Date Updated: 2026-04-27

...
...

The report discloses two Google Chrome vulnerabilities (CVE-2025-4664: insufficient policy enforcement in Loader; CVE-2025-4609: incorrect handle in Mojo) associated with an Initial Access Drive-By Compromise. Successful exploitation may permit arbitrary code execution in the context of the logged-on user, enabling installation of programs, data access/modification, or account creation depending on user privileges.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.