References https://nvd.nist.gov/vuln/detail/CVE-2025-4664 https://chromereleases.googleblog.com/2025/05/stable-channel-update-for-desktop_14.html https://thehackernews.com/2025/05/new-chrome-vulnerability-enables-cross.html https://www.sentinelone.com/vulnerability-database/cve-2025-4664/ https://wazuh.com/blog/detecting-chrome-cve-2025-4664-vulnerability-with-wazuh/ https://www.anquanke.com/post/id/313877 https://threatprotect.qualys.com/2025/05/15/google-releases-fix-for-zero-day-vulnerability-in-chrome-cve-2025-4664/ https://www.cisa.gov/known-exploited-vulnerabilities-catalog https://github.com/amalmurali47/cve-2025-4664 https://www.tenable.com/cve/CVE-2025-4664
Related VulnerabilitiesPoCgoogle-api-key: Google API KeyWP Google 地图 < 9.0.48 - 未经身份验证的存储 XSS (CVE-2025-11307)PoCCVE-2026-8732: WP Maps Pro (wp-google-map-gold) <= 6.1.0 - Unauthenticated Administrator Account CreationPoCCVE-2026-38360: dash-uploader 0.1.0 - 0.7.0a2 - Unauthenticated Arbitrary File Write via Path TraversalPoCCVE-2026-38361: dash-uploader 0.1.0 - 0.7.0a2 - Denial-of-Service via flowTotalChunksPoCCVE-2026-4810: Google ADK-Python - Unauthenticated Builder EndpointPoCgoogle-gemini-key-exposure: Google Gemini API Key - ExposureTosei Self-service Washing Machine /cgi-bin/downloader.php 目录遍历漏洞(CVE-2024-43022)PoCCVE-2024-13220: WordPress Google Map Professional - Cross-Site ScriptingPoCfreshrss-api: FreshRSS Google Reader API ExposurePoCgcloudignore-file-exposure: Google Cloud Ignore File ExposurePoCgoogle-calendar-exposure: Google Calendar - ExposurePoCwp-duracelltomi-google-tag-manager-fpd: WordPress Plugin Google Tag Manager - Full Path Disclosure