CVE-2025-8578 PUBLISHED

Assigner: Chrome
Reserved: 05.08.2025 Published: 07.08.2025 Updated: 12.08.2025

Use after free in Cast in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

Product Status

Vendor Google
Product Chrome
Versions
  • affected from 139.0.7258.66 to 139.0.7258.66 (excl.)

References

Problem Types

  • Use after free