Name
CVE-2025-6558
Description
Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CWEs
Published Date
Updated Date
Workaround
-
Advisories
https://chromereleases.googleblog.com/2025/07/stable-channel-update-for-desktop_15.htmlRelease Notes
https://issues.chromium.org/issues/427162086Issue Tracking
http://seclists.org/fulldisclosure/2025/Aug/0Third Party Advisory
http://seclists.org/fulldisclosure/2025/Jul/30Third Party Advisory
http://seclists.org/fulldisclosure/2025/Jul/32Third Party Advisory
http://seclists.org/fulldisclosure/2025/Jul/35Third Party Advisory
http://seclists.org/fulldisclosure/2025/Jul/37Third Party Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-6558US Government Resource
Analysis#
Vulnerability Ratings#
8.8
CVSSv31
NaN
other