Domain Spoofing Vulnerability in Google Chrome on Windows
CVE-2025-11212

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
6 November 2025

What is CVE-2025-11212?

A vulnerability in Google Chrome on Windows allows a remote attacker to manipulate user interactions and perform domain spoofing through specially crafted HTML pages. Users may unknowingly engage in specific UI gestures that lead to misrepresentation of web domains, posing serious security risks and potential data exposure.

Affected Version(s)

Chrome 141.0.7390.54

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-11212 : Domain Spoofing Vulnerability in Google Chrome on Windows