Type Confusion Vulnerability in Google Chrome Browser
CVE-2025-13228

8.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
17 November 2025

What is CVE-2025-13228?

A type confusion vulnerability has been identified in the V8 JavaScript engine used by Google Chrome. This flaw can potentially allow an attacker to exploit heap memory corruption by means of a crafted HTML page. If successfully executed, it may facilitate unauthorized access or manipulation of data, making it imperative for users to update their browser to the latest version to mitigate any potential risks.

Affected Version(s)

Chrome 142.0.7444.59

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-13228 : Type Confusion Vulnerability in Google Chrome Browser