Multiple Juniper Networks Vulnerabilities
April 29, 2025NVIDIA Riva Vulnerabilities Allow Unauthorized Access to Cloud Environments
April 29, 2025Multiple Juniper Networks Vulnerabilities
April 29, 2025NVIDIA Riva Vulnerabilities Allow Unauthorized Access to Cloud Environments
April 29, 2025Severity
Medium
Analysis Summary
CVE-2025-3066 CVSS:8.8
Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in Site Isolation. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2025-3069 CVSS:6.5
Google Chrome could allow a remote attacker to bypass security restrictions, caused by inappropriate implementation in Extensions. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to bypass security restrictions.
Impact
- Code Execution
- Security Bypass
Indicators of Compromise
CVE
CVE-2025-3066
CVE-2025-3069
Affected Vendors
Affected Products
- Google Chrome - 135.0
Remediation
Upgrade to the latest version of Google Chrome, available from the Google Chrome Releases Website.