Object Lifecycle Vulnerability in Google Chrome Media
CVE-2025-12430

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
10 November 2025

What is CVE-2025-12430?

An object lifecycle issue in the Media component of Google Chrome before version 142.0.7444.59 enables remote attackers to execute UI spoofing attacks. By crafting malicious HTML pages, attackers can manipulate the user interface, potentially leading users to disclose sensitive information or perform unintended actions. Ensuring timely updates is crucial for maintaining browser security and mitigating risks associated with this vulnerability.

Affected Version(s)

Chrome 142.0.7444.59

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-12430 : Object Lifecycle Vulnerability in Google Chrome Media