PT-2025-48761 · Google+3 · Google Chrome+3

CVE-2025-13636

·

Published

2025-12-02

·

Updated

2026-08-31

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 143.0.7499.41
Description An improper implementation in the Split View feature allowed a remote attacker to perform UI spoofing. The attacker needed to convince a user to perform specific UI gestures with a crafted domain name to exploit this issue.
Recommendations Update Google Chrome to version 143.0.7499.41 or later.

Fix

DoS

Authentication Bypass by Spoofing

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-15247
CVE-2025-13636
DSA-6072-1
OPENSUSE-SU-2025:15794-1
OPENSUSE-SU-2026:20020-1

Affected Products

Alt Linux
Debian
Google Chrome
Red Os