vulnerability
FreeBSD: VID-ea34264d-d289-11f0-a15a-a8a1599412c6 (CVE-2025-13636): chromium -- multiple security fixes
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:N/A:P) | Dec 6, 2025 | Dec 10, 2025 | Dec 10, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Dec 6, 2025
Added
Dec 10, 2025
Modified
Dec 10, 2025
Description
Chrome Releases reports: This update includes 13 security fixes: [456547591] High CVE-2025-13630: Type Confusion in V8. Reported by Shreyas Penkar (@streypaws) on 2025-10-31 [448113221] High CVE-2025-13631: Inappropriate implementation in Google Updater. Reported by Jota Domingos on 2025-09-29 [439058242] High CVE-2025-13632: Inappropriate implementation in DevTools. Reported by Leandro Teles on 2025-08-16 [458082926] High CVE-2025-13633: Use after free in Digital Credentials. Reported by Chrome on 2025-11-05 [429140219] Medium CVE-2025-13634: Inappropriate implementation in Downloads. Reported by Eric Lawrence of Microsoft on 2025-07-02 [457818670] Medium CVE-2025-13720: Bad cast in Loader. Reported by Chrome on 2025-11-04 [355120682] Medium CVE-2025-13721: Race in v8. Reported by Chrome on 2024-07-23 [405727341] Low CVE-2025-13635: Inappropriate implementation in Downloads. Reported by Hafiizh on 2025-03-24 [446181124] Low CVE-2025-13636: Inappropriate implementation in Split View. Reported by Khalil Zhani on 2025-09-20 [392375329] Low CVE-2025-13637: Inappropriate implementation in Downloads. Reported by Hafiizh on 2025-01-27 [448046109] Low CVE-2025-13638: Use after free in Media Stream. Reported by sherkito on 2025-09-29 [448408148] Low CVE-2025-13639: Inappropriate implementation in WebRTC. Reported by Philipp Hancke on 2025-10-01 [452071826] Low CVE-2025-13640: Inappropriate implementation in Passwords. Reported by Anonymous on 2025-10-14
Solutions
freebsd-upgrade-package-chromiumfreebsd-upgrade-package-ungoogled-chromium
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.