Tools AI-Found Vulnerability Register aifv-0024
Register entry
Chrome ANGLE use-after-free, critical, reported by Google Big Sleep
- CVE
- CVE-2025-9478
- Project
- Google Chrome
- Component
- ANGLE
- Finder
- Google Big Sleep
- Autonomy
- agent finds and reproduces; a human expert reviews before reporting
- Evidence tier
- CNA credits the finder in its own advisory
- Assigner
- Chrome
- Severity
- Critical (Chromium severity)
- Bounty
- None published
- Confidence
- CONFIRMED
What happened
A critical use-after-free in ANGLE fixed in Chrome 139.0.7258.154, credited to Google Big Sleep in the Stable Channel Update of 26 August 2025, reported to Chrome on 11 August 2025.
Credit as recorded: Critical CVE-2025-9478: Use after free in ANGLE. Reported by Google Big Sleep on 2025-08-11. Date basis: release note.
Sources
- CVE record, cvelistV5 mirrorraw.githubusercontent.com/CVEProject/cvelistV5/main/cves/202…
- Chrome Releases, Stable Channel Update, 26 August 2025chromereleases.googleblog.com/2025/08/stable-channel-update-…
On YFarmX
- Reference pageyfarmx.com/ai/security/big-sleep/
One record from the AI-Found Vulnerability Register, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 19 September 2026