CVE-2025-0996
MEDIUMDescription
Inappropriate implementation in Browser UI in Google Chrome on Android prior to 133.0.6943.98 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)
Is your site exposed to CVE-2025-0996?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| chrome |
References
Frequently Asked Questions
What is CVE-2025-0996? +
How severe is CVE-2025-0996? +
What products are affected by CVE-2025-0996? +
How do I check if I'm vulnerable to CVE-2025-0996? +
Related Vulnerabilities
base-x is a base encoder and decoder of any given alphabet using bitcoin style leading zero compression. Versions 4.0.0, 5.0.0, …
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0 until …
Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0-BETA1 until …
In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead …
Sandbox escape in the JavaScript Task feature of Google Cloud Application Integration allows an actor to execute arbitrary unsandboxed code …
An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of …