CVE-2025-0995: High Use after free in V8.
Chromium: CVE -2025-0995 Use after free in V8
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Use after free in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
— MITRE
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-0995?
CVE-2025-0995 has been classified as a high severity vulnerability due to potential exploitation risks.
How do I fix CVE-2025-0995?
To fix CVE-2025-0995, update Google Chrome to version 133.0.6943.98 or Microsoft Edge to version 133.0.3065.69 or higher.
What types of software are affected by CVE-2025-0995?
CVE-2025-0995 affects Google Chrome, Microsoft Edge, and Chromium-based versions of Edge.
What does CVE-2025-0995 exploit in the software?
CVE-2025-0995 exploits a use-after-free vulnerability in the V8 JavaScript engine, which could lead to code execution.
Is CVE-2025-0995 being addressed in future updates?
Yes, CVE-2025-0995 has been addressed in recent updates to both Google Chrome and Microsoft Edge.