PT-2025-48759 · Google+3 · Google Chrome+3

Published

2025-12-02

·

Updated

2026-01-22

·

CVE-2025-13634

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 143.0.7499.41
Description An improper implementation in the Downloads feature of Google Chrome on Windows allowed a local attacker to bypass the mark of the web security feature. This bypass was achievable through a specially crafted HTML page.
Recommendations Update Google Chrome to version 143.0.7499.41 or later.

Fix

Authentication Bypass by Spoofing

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-15245
CVE-2025-13634
DSA-6072-1
OPENSUSE-SU-2025:15794-1

Affected Products

Alt Linux
Debian
Google Chrome
Red Os