CVE-2025-2476
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Mar 19, 2025
Updated: Apr 1, 2025
CWE ID 416
Summary
CVE-2025-2476 is a critical vulnerability affecting Google Chrome versions prior to 134.0.6998.117. This issue involves a use-after-free flaw in the Lens component, which can be exploited by a remote attacker. By crafting a malicious HTML page, an adversary can potentially induce heap corruption and gain unauthorized control over the affected system. The Chrome security team has rated this vulnerability as critical due to its potential severity.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.