8.8
CVSSv3

CVE-2025-1914

CVSSv4: NA | CVSSv3: 8.8 | CVSSv2: NA | VMScore: 980 | EPSS: 0.00077 | KEV: Not Included
Published: 05/03/2025 Updated: 01/04/2025

Vulnerability Summary

Out of Bounds Read Vulnerability in Google Chrome V8 JavaScript Engine

An out of bounds read vulnerability exists in the V8 JavaScript engine within Google Chrome versions before 134.0.6998.35. This security issue enables a remote attacker to access memory outside intended boundaries by using a specially crafted HTML page. The vulnerability has been classified with a high severity rating by the Chromium security team, potentially allowing unauthorized memory access that could compromise system security.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

 The Chrome team is delighted to announce the promotion of Chrome 134 to the stable channel for Windows, Mac and Linux This will roll out over the coming days/weeksChrome 1340699835 (Linux)  1340699835/36 ( Windows)  1340699844/45 (Mac) contains a number of fixes and improvements -- a list of changes is ...