Home

Description

Inappropriate implementation in DevTools in Google Chrome prior to 143.0.7499.41 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: High)

PUBLISHED Reserved 2025-11-24 | Published 2025-12-02 | Updated 2025-12-02 | Assigner Chrome

Problem types

Inappropriate implementation

Product status

143.0.7499.41 (custom) before 143.0.7499.41
affected

References

chromereleases.googleblog.com/...nel-update-for-desktop.html

issues.chromium.org/issues/439058242

cve.org (CVE-2025-13632)

nvd.nist.gov (CVE-2025-13632)