PT-2025-48760 · Google+3 · Google Chrome+3

Published

2025-12-02

·

Updated

2026-01-22

·

CVE-2025-13635

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 143.0.7499.41
Description An improper implementation in the Downloads feature allows a local attacker to perform UI spoofing through a specially crafted HTML page.
Recommendations Update Google Chrome to version 143.0.7499.41 or later.

Fix

Authentication Bypass by Spoofing

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-15246
CVE-2025-13635
DSA-6072-1
OPENSUSE-SU-2025:15794-1

Affected Products

Alt Linux
Debian
Google Chrome
Red Os