CVE-2025-3071

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Apr 2, 2025
Updated: Apr 21, 2025
CWE ID 346

Summary

CVE-2025-3071 is a low-severity vulnerability in Google Chrome's Navigations feature, prior to version 135.0.7049.52. This issue stems from an inappropriate implementation in which a remote attacker can manipulate specific UI gestures on a crafted HTML page, deceiving users into bypassing the same origin policy. Despite its low severity, this vulnerability poses a potential threat to user security and privacy. Attackers could exploit this flaw to gain unauthorized access to sensitive data or launch further attacks. Users are advised to update their Chrome browsers to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share