alpine · CVE-2025-6557

Quick triage

Priority: not assigned Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2025-6557: 1 source package rows (qt6-qtwebengine); 1 state rows across 1 repos (edge-community); fixed 1, open 0.

Description:

Insufficient data validation in DevTools in Google Chrome on Windows prior to 138.0.7204.49 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Low)

cvelogic Threat Intelligence