CVE-2025-3620

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 16, 2025
Updated: Apr 23, 2025
CWE ID 416

Summary

CVE-2025-3620 is a high severity vulnerability affecting Google Chrome versions prior to 135.0.7049.95. This issue involves a use-after-free condition in the USB component, which can be exploited by a remote attacker through a specially crafted HTML page. The exploitation could potentially result in heap corruption, leading to unintended program behavior or system instability. Users are strongly advised to update their Chrome browsers to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share