A type confusion vulnerability (CVE-2025-13230, CVSS 8.8 High) in the V8 JavaScript engine of Google Chrome allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. Affected versions are Google Chrome prior to 142.0.7444.59 and prior to 142.0.7444.60. The vulnerability is fixed by upgrading to Google Chrome version 142.0.7444.59 or 142.0.7444.60.
Skip to main content Microsoft MSRC Security Updates Acknowledgements MSRC Customer Guidance Security Update Guide Vulnerabilities CVE-2025-13230 Your Privacy Choices Consumer Health Privacy