CVE-2025-3067
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Apr 2, 2025
Updated: Apr 8, 2025
Summary
CVE-2025-3067 is a medium severity vulnerability affecting Google Chrome on Android versions prior to 135.0.7049.52. This issue arises from an inappropriate implementation in Custom Tabs, enabling a remote attacker to trick users into engaging in specific UI gestures. By exploiting this flaw, the attacker can escalate privileges, potentially gaining unauthorized access to sensitive information or functionality. This vulnerability could lead to security risks, making it important that users upgrade to the latest Chrome version to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Google Chrome