Google Chrome Omnibox UI Spoofing Vulnerability on Android

Vulnerability

A UI spoofing vulnerability has been identified in the Omnibox component of Google Chrome for Android, affecting versions prior to 142.0.7444.137. This vulnerability allows remote attackers to manipulate user interface elements by convincing users to perform specific gestures on a crafted HTML page.

Impact

Exploitation of this vulnerability could lead to successful UI spoofing, where an attacker can create a misleading interface that may deceive users.

Remediation

Users can update to Google Chrome version 142.0.7444.137 or later to address this vulnerability.

Added: Nov 10, 2025, 8:24 PM
Updated: Nov 10, 2025, 10:33 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.4
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.