CVE-2025-0451
CVSS 3.1 Score 6.3 of 10 (medium)
Details
Published Feb 4, 2025
Updated: Feb 7, 2025
CWE ID 451
Summary
CVE-2025-0451 is a medium severity vulnerability affecting Google Chrome's Extensions API prior to version 133.0.6943.53. An attacker could successfully execute UI spoofing by convincing a user to perform specific UI gestures with a crafted Chrome Extension. This issue stemmed from an inappropriate implementation in the API, allowing the attacker to manipulate the user interface. Users are advised to update their Chrome browsers to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share