CVE Database
/

CVE-2025-1568

Back to search

CVE-2025-1568

Published: Apr 16, 2025

Modified: May 20, 2025

PUBLISHED

Description

Access Control Vulnerability in Gerrit chromiumos project configuration in Google ChromeOS 16063.87.0 allows an attacker with a registered Gerrit account to inject malicious code into ChromeOS projects and potentially achieve Remote Code Execution and Denial of Service via editing trusted pipelines by insufficient access controls and misconfigurations in Gerrit's project.config.

VendorProductVersions

Google

ChromeOS

affected
16063.87.0 - < 16063.87.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now