CVE-2025-0441: Inappropriate implementation in Fenced Frames
Chromium: CVE-2025-0441 Inappropriate implementation in Fenced Frames
Other sources
Inappropriate implementation in Fenced Frames in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to obtain potentially sensitive information from the system via a crafted HTML page. (Chromium security severity: Medium)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-0441?
CVE-2025-0441 is rated as a high-severity vulnerability that affects Chromium-based browsers.
How do I fix CVE-2025-0441?
To fix CVE-2025-0441, update your Google Chrome to version 132.0.6834.83 or later, or Microsoft Edge to version 132.0.2957.115 or later.
Which software is affected by CVE-2025-0441?
CVE-2025-0441 affects Google Chrome and Microsoft Edge (Chromium-based) versions prior to their respective patched releases.
What type of vulnerability is CVE-2025-0441?
CVE-2025-0441 is characterized as an inappropriate implementation vulnerability within the Chromium engine.
Is there a specific browser version that addresses CVE-2025-0441?
Yes, Google Chrome version 132.0.6834.83 and Microsoft Edge version 132.0.2957.115 address the vulnerabilities introduced by CVE-2025-0441.