Privilege Escalation Vulnerability in Google Chrome on Mac
CVE-2025-13631

8.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
2 December 2025

What is CVE-2025-13631?

A vulnerability in the Google Updater component of Google Chrome on Mac allows remote attackers to escalate privileges by exploiting an inappropriate implementation. This flaw is present in versions prior to 143.0.7499.41, where a crafted file can be used to manipulate user permissions, potentially leading to unauthorized access and control over the system. Users are urged to update their browsers to the latest version to mitigate any risks associated with this exploit.

Affected Version(s)

Chrome 143.0.7499.41

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-13631 : Privilege Escalation Vulnerability in Google Chrome on Mac