alpine · CVE-2025-4664

Quick triage

Priority: not assigned Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2025-4664: 1 source package rows (qt6-qtwebengine); 2 state rows across 2 repos (3.22-community, edge-community); fixed 2, open 0.

Description:

Insufficient policy enforcement in Loader in Google Chrome prior to 136.0.7103.113 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)

cvelogic Threat Intelligence