8.8
CVSSv3

CVE-2025-2135

CVSSv4: NA | CVSSv3: 8.8 | CVSSv2: NA | VMScore: 980 | EPSS: 0.00043 | KEV: Not Included
Published: 10/03/2025 Updated: 11/03/2025

Vulnerability Summary

Type Confusion in V8 JavaScript Engine in Google Chrome Enables Remote Heap Corruption

A type confusion vulnerability exists in the V8 JavaScript engine within Google Chrome versions before 134.0.6998.88. This security issue could enable a remote attacker to potentially cause heap corruption through a specially crafted HTML page. The vulnerability is considered high severity by Chromium security standards.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

The Stable channel has been updated to 1340699888/89 for Windows, Mac and 1340699888 for Linux which will roll out over the coming days/weeks A full list of changes in this build is available in the LogExtended stable channel has been updated to 1340699889 for Win/Mac and will roll out over coming days/weeksSecu ...