Google Chrome 139.0.7258.66

CPE Details

Google Chrome 139.0.7258.66
139.0.7258.66
2025-08-20
17h04 +00:00
2025-08-20
17h04 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:google:chrome:139.0.7258.66:*:*:*:*:*:*:*

Informations

Vendor

google

Product

chrome

Version

139.0.7258.66

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2025-9867 2025-09-03 15h15 +00:00 Inappropriate implementation in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
5.4
Medium
CVE-2025-9866 2025-09-03 15h15 +00:00 Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
8.8
High
CVE-2025-9865 2025-09-03 15h15 +00:00 Inappropriate implementation in Toolbar in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform domain spoofing via a crafted HTML page. (Chromium security severity: Medium)
5.4
Medium
CVE-2025-9864 2025-09-03 15h15 +00:00 Use after free in V8 in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2025-9478 2025-08-26 18h51 +00:00 Use after free in ANGLE in Google Chrome prior to 139.0.7258.154 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
8.8
High
CVE-2025-9132 2025-08-20 00h41 +00:00 Out of bounds write in V8 in Google Chrome prior to 139.0.7258.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2025-8882 2025-08-13 02h43 +00:00 Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
8.8
High
CVE-2025-8881 2025-08-13 02h43 +00:00 Inappropriate implementation in File Picker in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
6.5
Medium
CVE-2025-8901 2025-08-13 02h43 +00:00 Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2025-8880 2025-08-13 02h43 +00:00 Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
8.8
High
CVE-2025-8879 2025-08-13 02h43 +00:00 Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption via a curated set of gestures. (Chromium security severity: High)
8.8
High