CVE-2025-3067

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 2, 2025
Updated: Apr 8, 2025

Summary

CVE-2025-3067 is a medium severity vulnerability affecting Google Chrome on Android versions prior to 135.0.7049.52. This issue arises from an inappropriate implementation in Custom Tabs, enabling a remote attacker to trick users into engaging in specific UI gestures. By exploiting this flaw, the attacker can escalate privileges, potentially gaining unauthorized access to sensitive information or functionality. This vulnerability could lead to security risks, making it important that users upgrade to the latest Chrome version to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share