Google Chrome Omnibox UI Spoofing Vulnerability on Android

Vulnerability

A UI spoofing vulnerability has been identified in Google Chrome on Android, affecting versions prior to 142.0.7444.59. This issue arises from an incorrect security user interface in the Omnibox, which allowed remote attackers to manipulate UI elements. By convincing users to perform specific gestures, attackers could exploit this vulnerability through a specially crafted HTML page.

Impact

Exploitation of this vulnerability could lead to UI spoofing, where a malicious page can create a misleading interface that tricks users into interacting with it in a certain way.

Remediation

Users can update to Google Chrome version 142.0.7444.59 or later to address this vulnerability.

Added: Nov 10, 2025, 8:27 PM
Updated: Nov 10, 2025, 8:27 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.