Security Advisory

CVE-2025-12908

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-07 23:23:38
Last updated 2025-11-10 15:38:24
Assigner Chrome
State PUBLISHED

Description

Insufficient validation of untrusted input in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Low)