Zero-day vulnerabilities discovered: 1
Permissions, Privileges, and Access Controls
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to insufficient policy enforcement in Loader. A remote attacker can trick the victim into visiting a specially crafted website and bypass implemented security restrictions.
Note, the vulnerability is being actively exploited in the wild.
Software: Google Chrome
Links:
https://chromereleases.googleblog.com/2025/05/stable-channel-update-for-desktop_14.html