Tools AI-Found Vulnerability Register aifv-0025
Register entry
Chrome V8 out-of-bounds write, reported by Google Big Sleep
- CVE
- CVE-2025-9132
- Project
- Google Chrome
- Component
- V8
- Finder
- Google Big Sleep
- Autonomy
- agent finds and reproduces; a human expert reviews before reporting
- Evidence tier
- CNA credits the finder in its own advisory
- Assigner
- Chrome
- Bounty
- None published
- Confidence
- CONFIRMED
What happened
An out-of-bounds write in V8 fixed in Chrome 139.0.7258.138, credited to Google Big Sleep in the Stable Channel Update of 19 August 2025, reported to Chrome on 4 August 2025. Settled at the release note on 19 September 2026 after a sibling note had carried it as contested.
Credit as recorded: CVE-2025-9132: Out of bounds write in V8. Reported by Google Big Sleep on 2025-08-04. Date basis: release note.
Sources
- CVE record, cvelistV5 mirrorraw.githubusercontent.com/CVEProject/cvelistV5/main/cves/202…
- Chrome Releases, Stable Channel Update, 19 August 2025chromereleases.googleblog.com/2025/08/stable-channel-update-…
On YFarmX
- Reference pageyfarmx.com/ai/security/big-sleep/
One record from the AI-Found Vulnerability Register, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 19 September 2026