Google Chrome Downloads Mark of the Web Bypass Vulnerability

Vulnerability

A vulnerability in the Downloads feature of Google Chrome on Windows, in versions prior to 143.0.7499.41, allowed local attackers to bypass the 'mark of the web' restriction using a specially crafted HTML page. This issue arises from an inappropriate implementation in the way downloads are handled.

Impact

Exploitation of this vulnerability could lead to unauthorized bypassing of security features, potentially allowing malicious content to be downloaded without the usual warnings or restrictions.

Remediation

Users can update to Google Chrome version 143.0.7499.41 or later to address this vulnerability.

Added: Dec 2, 2025, 7:37 PM
Updated: Dec 3, 2025, 1:19 AM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
3.3
remediation
7.7
relevance
1.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.