Google Chrome Autofill Inappropriate Implementation Vulnerability Allowing Memory Information Disclosure

Vulnerability

A vulnerability exists in Google Chrome Autofill feature, in versions prior to 142.0.7444.59. This issue allows remote attackers to extract potentially sensitive information from process memory. The exploitation requires convincing the user to perform specific UI actions on a crafted HTML page.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information from the user's process memory.

Remediation

Users can update to Google Chrome version 142.0.7444.59 or later to address this vulnerability.

Added: Nov 10, 2025, 8:32 PM
Updated: Nov 10, 2025, 9:21 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.9
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.