Loading cryptocurrency prices...

Google Patches Active Chrome Zero-Day Flaws in V8 Engine

Google Patches Critical Chrome V8 Engine Vulnerabilities, Urges Immediate Update to Prevent Active Exploits

  • Google has released a security update for Chrome to fix two serious vulnerabilities, one actively exploited in the wild.
  • The main flaw, CVE-2025-13223, is a type confusion bug in the V8 JavaScript and WebAssembly engine that risks code execution or crashes.
  • This patch addresses seven zero-day vulnerabilities reported or exploited since early 2025, including multiple V8 type confusion bugs.
  • Users should update to Chrome version 142.0.7444.175 or later on Windows and Linux, and 142.0.7444.176 for macOS, to ensure protection.
  • Other Chromium-based browsers are advised to apply updates when available to mitigate similar risks.

Google issued security updates on November 17, 2025, for its Chrome browser to fix two critical vulnerabilities. One of these, identified as CVE-2025-13223, is a type confusion flaw in the V8 JavaScript and WebAssembly engine. This issue allows remote attackers to exploit heap corruption through a crafted HTML page, potentially leading to arbitrary code execution or program crashes, according to its NIST National Vulnerability Database (NVD) entry. The vulnerability has been actively exploited in real-world attacks.

- Advertisement -

The flaw was discovered and reported by Clément Lecigne of Google‘s Threat Analysis Group (TAG) on November 12, 2025. Google has not disclosed details about the attackers, targets, or scope of exploitation but confirmed that an “exploit for CVE-2025-13223 exists in the wild.”

Alongside this, Google patched a related type confusion vulnerability, CVE-2025-13224, identified by its AI system Big Sleep, which also affects the V8 engine. These fixes are part of a broader security update that addresses a total of seven zero-day vulnerabilities in Chrome reported or exploited since early 2025. The seven include previous type confusion bugs such as CVE-2025-6554 and CVE-2025-10585.

The company urges users to update Chrome to versions 142.0.7444.175 or 142.0.7444.176, depending on the operating system, to receive these security improvements. Users can check their version and apply updates by navigating to More > Help > About Google Chrome and selecting Relaunch. Browsers built on the Chromium engine, including Microsoft Edge, Brave, Opera, and Vivaldi, should also install respective updates when released to address similar risks.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

- Advertisement -

Previous Articles:

- Advertisement -

Latest News

VanEck CEO Questions Bitcoin’s Encryption, Privacy Amid 2026 Bear Market

Jan van Eck, CEO of VanEck, raised concerns about Bitcoin’s encryption and privacy during...

XRP Gains 300% Since Nov 2024; Eyes Set on 2026 Highs

XRP has surged more than 300% since November 2024 despite recent market corrections.The resolution...

Crypto Dispensers Eyes $100M Sale Amid CEO Money Laundering Charges

Crypto Dispensers is exploring a possible $100 million sale amid legal challenges.Its founder, Firas...

12 Hosting Providers To Buy VPS With Bitcoin: An Expert Guide for 2026

You need a VPS. You want to pay with Bitcoin. Simple enough, right?Not quite....

Lyn Alden Rules Out Major Bitcoin Crash, Sees Bull Market Ahead

Lyn Alden sees no likelihood of a significant crash in Bitcoin or the crypto...
- Advertisement -

Must Read

How to Buy VPS with Crypto from Hostinger – Step by Step guide

Did you know that nowadays you can use Bitcoin to purchase a Windows VPS? If you’re here, you’re probably wondering how to do it....