CVE-2025-4664

✓ Confirmed 0-Day
Triaged: March 5, 2026 10 articles

EPSS Score

Source: FIRST.org · 2026-05-24
0.12%
probability
This CVE has a 0.12% probability of being exploited in the next 30 days.
0% Top 30.1th percentile of all CVEs 100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE. View on VulnerabilityLookup ↗

Exploits & PoC

Leviticus-Triage/ChromSploit-Framework

Advanced AI-Powered Exploitation Framework | CVE-2025-4664 & CVE-2025-2783 & CVE-2025-2857 & CVE-2025-30397 |

15
amalmurali47/cve-2025-4664

PoC and Setup for CVE-2025-4664

4
speinador/CVE-2025-4664

PoC CVE-2025-4664 — speinador/CVE-2025-4664

0
3 repos — triés par ⭐ Rechercher sur GitHub ↗

Signal Intelligence

Confidence
85%
EPSS 0.12%
Mentions 10
Last Seen Dec 11, 2025

CNA Information

Analyst Note

CVE-2025-4664 is explicitly named in articles as a zero-day exploited in attacks, with titles stating 'Google patches sixth Chrome zero-day exploited in attacks this year' and 'Google fixes new Chrome zero-day flaw exploited in attacks.' CISA tagged it as actively exploited post-patch. Exploitation in the wild is clearly documented with timing consistent with active attacks preceding or coinciding with the May 2025 patch.

Threat Actors 7

Cobalt
apt_group Financial crime 🇷🇺 RU
Earth Lusca
apt_group Information theft and espionage 🇨🇳 CN
Hacking Team
apt_group 🇮🇹 IT
Tick
apt_group Information theft and espionage 🇨🇳 CN
HAZY TIGER
apt_group Information theft and espionage 🇮🇳 IN
Luna Moth
apt_group
Operation Cobalt Whisper
apt_group Financial crime 🇨🇳 CN

Triage Info

Decided atMar 05, 2026