Vulnerability Bulletins

CVE-2025-12728

   
Affected software ANDROID
 
Inappropriate implementation in Omnibox in Google Chrome on Android prior to 142.0.7444.137 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

Link:

https://nvd.nist.gov/vuln/detail/CVE-2025-12728