CVE-2025-1915

Publication date

2025-03-05 03:48:35

Family

Chrome

State

PUBLISHED

Description

Improper Limitation of a Pathname to a Restricted Directory in DevTools in Google Chrome on Windows prior to 134.0.6998.35 allowed an attacker who convinced a user to install a malicious extension to bypass file access restrictions via a crafted Chrome Extension. (Chromium security severity: Medium)