Security Advisory

CVE-2025-9867

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-09-03 16:17:48
Last updated 2025-09-03 17:17:14
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

Inappropriate implementation in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)