CVE-2025-0451, meanwhile, is “only” a medium-rated vulnerability and impacts the Extensions API.
Fake Chrome sites spread ValleyRAT via DLL hijacking, targeting finance and sales with keylogging and remote execution.