Zero-day Vulnerability Database

Change view

Zero-day vulnerabilities discovered: 1

Multiple vulnerabilities in Google Chrome
CVE-2025-4664

Permissions, Privileges, and Access Controls

The vulnerability allows a remote attacker to bypass implemented security restrictions.

The vulnerability exists due to insufficient policy enforcement in Loader. A remote attacker can trick the victim into visiting a specially crafted website and bypass implemented security restrictions.

Note, the vulnerability is being actively exploited in the wild.

Software: Google Chrome