CVE Database
/

CVE-2025-8582

Back to search

CVE-2025-8582

Published: Aug 7, 2025

Modified: Aug 11, 2025

PUBLISHED

Description

Insufficient validation of untrusted input in Core in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Low)

VendorProductVersions

Google

Chrome

affected
139.0.7258.66 - < 139.0.7258.66

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now