CVE-2025-5068: Medium Use after free in Blink
Chromium: CVE-2025-5068 Use after free in Blink
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Use after free in Blink in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
— NVD
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-5068?
CVE-2025-5068 has a medium severity rating as per Chromium security standards.
How do I fix CVE-2025-5068?
To fix CVE-2025-5068, you should update Google Chrome to version 137.0.7151.68 or later.
What does CVE-2025-5068 exploit?
CVE-2025-5068 exploits a use after free vulnerability in Blink within Google Chrome.
Can CVE-2025-5068 be exploited remotely?
Yes, CVE-2025-5068 can potentially be exploited remotely through a crafted HTML page.
What software is affected by CVE-2025-5068?
CVE-2025-5068 affects Google Chrome versions prior to 137.0.7151.68.