CVE-2025-10890
9.1CRITICALSide-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
Published: 9/24/2025Updated: 9/25/2025
Description
Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
AI AnalysisPowered by AI
Affected Products
googlechrome
applemacos
-
linuxlinux_kernel
-
microsoftwindows
-
References
- https://chromereleases.googleblog.com/2025/09/stable-channel-update-for-desktop_23.htmlRelease NotesVendor Advisory
- https://issues.chromium.org/issues/430336833Issue TrackingPermissions Required