CVE-2025-9867

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
3 September 2025

What is CVE-2025-9867?

Inappropriate implementation in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

Affected Version(s)

Chrome 140.0.7339.80

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-9867 : UI Spoofing Vulnerability in Google Chrome for Android