PT-2025-48759 · Google+3 · Google Chrome+3
Published
2025-12-02
·
Updated
2026-01-22
·
CVE-2025-13634
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 143.0.7499.41
Description
An improper implementation in the Downloads feature of Google Chrome on Windows allowed a local attacker to bypass the mark of the web security feature. This bypass was achievable through a specially crafted HTML page.
Recommendations
Update Google Chrome to version 143.0.7499.41 or later.
Fix
Authentication Bypass by Spoofing
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Debian
Google Chrome
Red Os