Skip to content
Active Exploitation of Zero-Day Vulnerability in Google Chrome

Active Exploitation of Zero-Day Vulnerability in Google Chrome

Csa.Sg November 18, 2025

Google has released security updates addressing a zero-day vulnerability (CVE-2025-13223) in its Chrome browser.

Successful exploitation of the type confusion vulnerability in Google Chrome's V8 JavaScript and WebAssembly engine could allow an attacker to perform arbitrary code execution or crash the browser.

This vulnerability affects versions of Google Chrome prior to 142.0.7444.175/.176 for Windows, 142.0.7444.176 for Mac, and 142.0.7444.175 for Linux.

This vulnerability is reportedly being exploited in the wild.

Users of Chrome browsers are advised to upgrade their browser to the latest versions.

Users are also encouraged to enable automatic updates in their Chrome browser to ensure that their software is updated promptly.

Extracted Entities

Attack Types (1)

Platforms (2)