Active Exploitation of Zero-Day Vulnerability in Google Chrome
Google has released security updates addressing a zero-day vulnerability (CVE-2025-13223) in its Chrome browser.
Successful exploitation of the type confusion vulnerability in Google Chrome's V8 JavaScript and WebAssembly engine could allow an attacker to perform arbitrary code execution or crash the browser.
This vulnerability affects versions of Google Chrome prior to 142.0.7444.175/.176 for Windows, 142.0.7444.176 for Mac, and 142.0.7444.175 for Linux.
This vulnerability is reportedly being exploited in the wild.
Users of Chrome browsers are advised to upgrade their browser to the latest versions.
Users are also encouraged to enable automatic updates in their Chrome browser to ensure that their software is updated promptly.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
