Side-channel Information Leakage in Google Chrome
CVE-2025-13992

4.7MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
3 December 2025

What is CVE-2025-13992?

A vulnerability in Google Chrome allows remote attackers to exploit side-channel information leakage related to Navigation and Loading processes. This issue enables a crafted HTML page to bypass site isolation protections, potentially leading to unauthorized access to sensitive information. Users are advised to update their browser to the latest version to mitigate exposure.

Affected Version(s)

Chrome 139.0.7258.66

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-13992 : Side-channel Information Leakage in Google Chrome