Inappropriate Autofill Implementation in Google Chrome
CVE-2025-12440

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
10 November 2025

What is CVE-2025-12440?

A vulnerability in Google Chrome's Autofill feature prior to version 142.0.7444.59 allows an attacker to exploit it through crafted HTML pages. By persuading a user to interact with specific UI gestures, the attacker can potentially access sensitive information stored in process memory. This highlights the importance of maintaining updated software and the need for users to be cautious when engaging with unfamiliar webpages.

Affected Version(s)

Chrome 142.0.7444.59

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-12440 : Inappropriate Autofill Implementation in Google Chrome