Aller au contenu
Appaloosa Scout
CRITICAL 9.8 KEV

CVE-2025-10585

Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS v3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA Known Exploited Vulnerability

Ajouté au KEV
2025-09-23
Deadline remédiation
2025-10-14
Action requise
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Ransomware
Non

Apps mobiles affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
google chrome Android <140.0.7339.185 cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
google chrome iOS <140.0.7339.185 cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
Voir sur NVD ↗ Catalogue CISA KEV ↗