UI Spoofing Vulnerability in Google Chrome Product by Google
CVE-2025-11208

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
6 November 2025

What is CVE-2025-11208?

A vulnerability exists in Google Chrome that enables a remote attacker to exploit inappropriate implementation in the Media component. By convincing users to execute specific UI gestures on a crafted HTML page, an attacker can perform UI spoofing, potentially leading to unauthorized actions or data exposure. Users are encouraged to update Google Chrome to the latest version to mitigate this risk.

Affected Version(s)

Chrome 141.0.7390.54

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-11208 : UI Spoofing Vulnerability in Google Chrome Product by Google