Google Patches Active Chrome Zero-Day Flaws in V8 Engine

Google Patches Critical Chrome V8 Engine Vulnerabilities, Urges Immediate Update to Prevent Active Exploits

  • Google has released a security update for Chrome to fix two serious vulnerabilities, one actively exploited in the wild.
  • The main flaw, CVE-2025-13223, is a type confusion bug in the V8 JavaScript and WebAssembly engine that risks code execution or crashes.
  • This patch addresses seven zero-day vulnerabilities reported or exploited since early 2025, including multiple V8 type confusion bugs.
  • Users should update to Chrome version 142.0.7444.175 or later on Windows and Linux, and 142.0.7444.176 for macOS, to ensure protection.
  • Other Chromium-based browsers are advised to apply updates when available to mitigate similar risks.

Google issued security updates on November 17, 2025, for its Chrome browser to fix two critical vulnerabilities. One of these, identified as CVE-2025-13223, is a type confusion flaw in the V8 JavaScript and WebAssembly engine. This issue allows remote attackers to exploit heap corruption through a crafted HTML page, potentially leading to arbitrary code execution or program crashes, according to its NIST National Vulnerability Database (NVD) entry. The vulnerability has been actively exploited in real-world attacks.

- Advertisement -

The flaw was discovered and reported by Clément Lecigne of Google‘s Threat Analysis Group (TAG) on November 12, 2025. Google has not disclosed details about the attackers, targets, or scope of exploitation but confirmed that an “exploit for CVE-2025-13223 exists in the wild.”

Alongside this, Google patched a related type confusion vulnerability, CVE-2025-13224, identified by its AI system Big Sleep, which also affects the V8 engine. These fixes are part of a broader security update that addresses a total of seven zero-day vulnerabilities in Chrome reported or exploited since early 2025. The seven include previous type confusion bugs such as CVE-2025-6554 and CVE-2025-10585.

The company urges users to update Chrome to versions 142.0.7444.175 or 142.0.7444.176, depending on the operating system, to receive these security improvements. Users can check their version and apply updates by navigating to More > Help > About Google Chrome and selecting Relaunch. Browsers built on the Chromium engine, including Microsoft Edge, Brave, Opera, and Vivaldi, should also install respective updates when released to address similar risks.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

- Advertisement -

Previous Articles:

- Advertisement -

Latest News

Bitcoin Advances Post-Quantum Security With BIP 360

Developers have merged BIP 360 into Bitcoin's GitHub repository as a formal step toward...

Russia Pushes Digital Ruble in BRICS to Ditch Dollar

Russia aims to use its upcoming digital ruble to challenge the dominance of the...

XRP Plunges 60%, Panic Selling Intensifies as Losses Mount

XRP is experiencing intense panic selling, with its price plummeting to $1.43 from $3.50...

Mirae Asset to Acquire Crypto Exchange Korbit for $93M

Mirae Asset Consulting will acquire a 92% controlling stake in South Korean crypto exchange...

Must Read

How To Travel With Bitcoin: 9 Travel Companies Accepting Bitcoin

Bitcoin travel is a reality, as several travel companies now accept payments in cryptocurrencies for their services.Those who have opened a Bitcoin account on...
🔥 #AD Get 20% OFF any new 12 month hosting plan from Hostinger. Click here!