US cyber agency warns users to update Chrome to protect against hackers exploiting vulnerabilities

Published:

Cyber Warriors Conclave — nine editions, one cyber safe nation

Critical Security Update: Google Chrome Version 125 Released to Fix High-Risk Vulnerabilities

Google Chrome users are urged to check if their browser is updated to the latest version, as older versions are vulnerable to exploitation by malicious actors. Following an emergency security patch, Google has released Chrome version 125, which addresses critical flaws and two additional high-risk vulnerabilities.

The Chrome team has rolled out stable version 125, which includes nine security fixes and various improvements. Users are advised not to delay updating their browsers to ensure their safety online.

Two of the high-risk vulnerabilities identified in Chrome were listed in the US Cybersecurity and Infrastructure Security Agency’s Known Exploited Vulnerabilities Catalog. Federal agencies have been warned to address these vulnerabilities promptly to mitigate potential risks.

One of the vulnerabilities, labeled CVE-2024-4761, impacts Chrome versions prior to 124.0.6367.207 and involves an “out-of-bounds write” issue in the V8 JavaScript engine. This vulnerability could allow remote attackers to execute malicious code via a crafted HTML page.

The other vulnerability, labeled CVE-2024-4671, poses a sandbox escape risk for attackers who compromise the renderer process. Both vulnerabilities affect multiple Chromium-based browsers, emphasizing the importance of timely updates.

CISA has set deadlines for agencies to address these vulnerabilities, with ‘high-risk’ vulnerabilities requiring resolution within 30 days. Google has released the latest Chrome versions, 125.0.6422.60/.61 on Windows and Mac, and 125.0.6422.60 on Linux, to address these security concerns.

To update Chrome, users can go to Settings and select About Chrome to check for available updates. It is crucial to stay vigilant and ensure that your browser is up to date to protect against potential cyber threats.

Cyber Warriors Conclave Chapter X — Beyond the Ballroom

Related articles

Recent articles

Media Streaming Devices with Open ADB Ports Expose Home Networks to Cyber Threats

Media streaming devices, particularly those with open Android Debug Bridge (ADB) ports, are exposing home networks to significant cybersecurity threats. According to a report...

PaperCut Vulnerabilities CVE-2026-81578 and CVE-2026-82078 Added to CISA KEV Database

Advisory Date: August 28, 2026Last Updated: August 31, 2026 Recent vulnerabilities have been identified in PaperCut products, specifically affecting versions of PaperCut MF and PaperCut...

Microsoft Warns of TerminalFix Campaign Using Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor

Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a malicious command in Windows Terminal...

Microsoft Security August 2026 Update Introduces Enhanced AI Management Tools and Threat Intelligence

As organizations increasingly integrate AI agents into their operations, the need for robust cybersecurity measures has never been more critical. The latest updates from...