Google · Google Chrome · CVE-2025-4052
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 136.0.7103.59
chromium in Debian Linux (affected versions not specified)
**Description**
The issue is related to an inappropriate implementation in DevTools, allowing a remote attacker to bypass discretionary access control via a crafted HTML page if the user is convinced to perform specific UI gestures.
**Recommendations**
For Google Chrome versions prior to 136.0.7103.59, update to version 136.0.7103.59 or later.
For chromium in Debian Linux, at the moment, there is no information about a newer version that contains a fix for this vulnerability.