CVE-2025-0996: Inappropriate implementation in Browser UI in Google Chrome on Android prior to 133.0.6943.98 allowed a remote attacker to spoof the contents of...

Sign up for FREE to recieve instant alerts about this vulnerability!

Description

Inappropriate implementation in Browser UI in Google Chrome on Android prior to 133.0.6943.98 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)

Classification

CVE ID: CVE-2025-0996

Affected Products

Vendor: Google

Product: Chrome

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.04% (probability of being exploited)

EPSS Percentile: 0.11935 (how common is this exploit)

EPSS Date: 2025-03-13 (when was this score calculated)

Timeline