Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5996-1 | chromium security update |
EUVD |
EUVD-2025-27600 | Inappropriate implementation in Mojo in Google Chrome on Android, Linux, ChromeOS prior to 140.0.7339.127 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: High) |
Mon, 22 Sep 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Linux linux Kernel
|
|
| CPEs | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:-:*:*:*:*:*:*:* cpe:2.3:o:google:chrome_os:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Linux linux Kernel
|
Thu, 11 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android Google chrome Google chrome Os Linux Linux linux |
|
| Vendors & Products |
Google
Google android Google chrome Google chrome Os Linux Linux linux |
Wed, 10 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 CWE-346 |
|
| Metrics |
cvssV3_1
|
Wed, 10 Sep 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Inappropriate implementation in Mojo in Google Chrome on Android, Linux, ChromeOS prior to 140.0.7339.127 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: High) | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2026-02-26T17:48:41.797Z
Reserved: 2025-09-09T18:15:52.885Z
Link: CVE-2025-10201
Updated: 2025-09-10T19:23:12.012Z
Status : Analyzed
Published: 2025-09-10T19:15:40.363
Modified: 2025-09-22T16:51:08.873
Link: CVE-2025-10201
No data.
OpenCVE Enrichment
Updated: 2025-09-11T10:42:38Z
Debian DSA
EUVD