CVE-2025-9864: s Stable channelThe notes also did not include the following security fixes that were included in the release:
Chromium: CVE-2025-9864 Use after free in V8
Other sources
Rejected reason: This CVE ID was assigned in error to a vulnerability that was both introduced and fixed before the code landed in the Stable channel of Chrome, and has been withdrawn.
— NVD
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-9864?
The severity of CVE-2025-9864 is classified as High.
How do I fix CVE-2025-9864?
To fix CVE-2025-9864, update Google Chrome to version 140.0.7339.80 or later.
What is the impact of CVE-2025-9864?
CVE-2025-9864 allows a remote attacker to potentially exploit heap corruption through a crafted HTML page.
Which versions of Google Chrome are affected by CVE-2025-9864?
CVE-2025-9864 affects Google Chrome versions prior to 140.0.7339.80.
Is there a workaround for CVE-2025-9864?
There is no widely recommended workaround for CVE-2025-9864; updating to the latest version is advised.