CVE-2025-13632: Medium Inappropriate implementation in DevTools.
Chromium: CVE-2025-13632 Inappropriate implementation in DevTools
Other sources
Inappropriate implementation in DevTools in Google Chrome prior to 143.0.7499.41 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: High)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-13632?
CVE-2025-13632 has a high severity rating due to its potential for sandbox escape.
How do I fix CVE-2025-13632?
To fix CVE-2025-13632, update Google Chrome to version 143.0.7499.41 or later.
What type of vulnerability is CVE-2025-13632?
CVE-2025-13632 is a sandbox escape vulnerability that can be exploited via a crafted Chrome Extension.
Who is affected by CVE-2025-13632?
Users of Google Chrome versions prior to 143.0.7499.41 are affected by CVE-2025-13632.
What can an attacker do with CVE-2025-13632?
An attacker can potentially perform a sandbox escape by convincing a user to install a malicious Chrome extension.