Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-13097

Опубликовано: 14 нояб. 2025
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

Отчет

Red Hat Product Security rates the severity of this flaw as determined by the Google Chrome Security Advisory.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-266
https://bugzilla.redhat.com/show_bug.cgi?id=2414972chromium-browser: Inappropriate implementation in DevTools

EPSS

Процентиль: 21%
0.00067
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
ubuntu
5 месяцев назад

Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.4
nvd
5 месяцев назад

Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.4
debian
5 месяцев назад

Inappropriate implementation in DevTools in Google Chrome prior to 136 ...

CVSS3: 5.4
github
5 месяцев назад

Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.4
fstec
11 месяцев назад

Уязвимость компонента DevTools браузера Google Chrome, позволяющая нарушителю обойти защитный механизм песочницы

EPSS

Процентиль: 21%
0.00067
Низкий

6.5 Medium

CVSS3