Loading HuntDB...

CVE-2025-5064

MEDIUM
Published 2025-05-27T20:43:03.557Z
Actions:

CVSS Score

V3.1
5.4
/10
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
Base Score Metrics
Exploitability: N/A Impact: N/A

Attack Vector Metrics

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED

Impact Metrics

Confidentiality
LOW
Integrity
LOW
Availability
NONE

Description

Inappropriate implementation in Background Fetch API in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

Available Exploits

No exploits available for this CVE.

Related News

Chrome Stable Channel Update for Desktop (Google, 2025.05.27)

Chrome 137.0.7151.55 (Linux) 137.0.7151.55/56 (Windows / Mac) stable 11 篁吟祉ュャ」篆③c [$4000][40058068] Medium CVE-2025-5064: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer on 2021-11-29 [$2000][40059071] Medium CVE-2025-5065…

Ryukoku.ac.jp 2025-05-29 15:00

Affected Products

References

Published: 2025-05-27T20:43:03.557Z
Last Modified: 2025-05-28T14:21:03.129Z
Copied to clipboard!