Exploitation Summary
EIP tracks 1 public exploit for CVE-2025-11460. PoCs published by lylzjnqe.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2025-11460, a use-after-free vulnerability in Chromium's IndexedDB implementation. The exploit leverages a race condition during forced database closure to achieve remote code execution in the browser process.
Description
Use after free in Storage in Google Chrome prior to 141.0.7390.65 allowed a remote attacker to execute arbitrary code via a crafted video file. (Chromium security severity: High)
Exploits (1)
This repository contains a functional exploit for CVE-2025-11460, a use-after-free vulnerability in Chromium's IndexedDB implementation. The exploit leverages a race condition during forced database closure to achieve remote code execution in the browser process.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H