UI Spoofing Vulnerability in Google Chrome Browser
CVE-2025-12444

4.2MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
10 November 2025

What is CVE-2025-12444?

A vulnerability in Google Chrome affects the security user interface when using fullscreen features. An attacker can exploit this flaw by convincing a user to perform specific gestures, enabling UI spoofing through a specially crafted HTML page. This manipulation can mislead users, potentially compromising their security. Keeping Chrome updated is essential to protect against these risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Chrome 142.0.7444.59

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.