CVE-2025-13042

Published Nov 12, 2025

Last updated 16 hours ago

Overview

Description
Inappropriate implementation in V8 in Google Chrome prior to 142.0.7444.166 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Source
chrome-cve-admin@google.com
NVD status
Analyzed
Products
chrome

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-787

Social media

Hype score
Not currently trending
  1. Critical patch for #openSUSE Tumbleweed: CVE-2025-13042 in #Chromium (CVSS 8.8). High-severity heap corruption flaw. Remote exploit via malicious page. Patch with zypper patch now. Read more: 👉 https://t.co/hjyz5HwLbG #Security https://t.co/pAJ5aGje0X

    @Cezar_H_Linux

    15 Nov 2025

    53 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨 CVE-2025-13042 Inappropriate implementation in V8 in Google Chrome prior to 142.0.7444.166 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) https://t.co/nZbyHNPPAr #InfoSec #CyberSec #CyberSecurity

    @AnonOzzyDude

    14 Nov 2025

    446 Impressions

    3 Retweets

    5 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Chromium: CVE-2025-13042 Inappropriate implementation in V8 https://t.co/yDkVo72Job #cybersecurity #SecQube

    @SecQube

    14 Nov 2025

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. Firefox 145 and Chrome 142 Patch High-Severity Flaws in Latest Releases. Google and Mozilla have released fresh Chrome and Firefox updates that address multiple high-severity security defects. The V8 JavaScript engine bug is tracked as CVE-2025-13042. https://t.co/WWfx3lcWx5 htt

    @riskigy

    14 Nov 2025

    51 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Urgent security update for #Debian users. A critical flaw in Chromium (CVE-2025-13042) can lead to arbitrary code execution. The fix is available for Debian 12 & 13. Read more: 👉 https://t.co/LhtsGQe3Kj #Security https://t.co/QjFgElmzM6

    @Cezar_H_Linux

    13 Nov 2025

    20 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 CVE-2025-13042 A high-severity implementation flaw in Chrome’s V8 JavaScript engine allows attackers to exploit browser memory corruption for potential #RCE 🛡️ Action: Keep your website and all integrated scripts updated to avoid hosting exploit kits or malicious p

    @MNovofastovsky

    13 Nov 2025

    48 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. [CVE-2025-13042: HIGH] Vulnerability in V8 engine of pre-142.0.7444.166 Google Chrome version allows remote hackers to exploit heap corruption via manipulated HTML page. Take precautions.#cve,CVE-2025-13042,#cybersecurity https://t.co/CDvjETwfqQ https://t.co/R2qMwNW53F

    @CveFindCom

    12 Nov 2025

    49 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. CVE-2025-13042 pertains to a security flaw in Google Chrome's V8 JavaScript engine, specifically an "Inappropriate implementation" leading to heap corruption. This flaw was present in Chrome versions prior to 142.0.7444.166. The vulnerability arises due to a bug in how V8 handles

    @CveTodo

    12 Nov 2025

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations