Heap Corruption Vulnerability in Google Chrome
CVE-2025-12437

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
10 November 2025

What is CVE-2025-12437?

A use after free vulnerability in the PageInfo component of Google Chrome prior to version 142.0.7444.59 can be exploited by a remote attacker. By persuading a user to perform specific UI actions on a manipulated HTML page, it is possible for the attacker to cause heap corruption. This flaw could potentially lead to unexpected behaviors and compromise user data, emphasizing the importance of keeping the browser updated.

Affected Version(s)

Chrome 142.0.7444.59

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-12437 : Heap Corruption Vulnerability in Google Chrome