Sunday, October 4, 2026

Chrome Releases Security Patch for 11 Code Execution Vulnerabilities

The Chrome team has announced the rollout of a critical security update for its popular web browser, Chrome, addressing 11 code execution vulnerabilities that could potentially put millions of users at risk.

The update, Chrome 138.0.7204.49 for Linux and 138.0.7204.49/50 for Windows and Mac, is now being distributed through the stable channel and will reach users over the coming days and weeks.

Major Security Fixes in Chrome 138

This latest release is part of Google’s ongoing commitment to user safety and browser integrity.

The update patches a range of vulnerabilities, including several that were discovered and reported by external security researchers.

Notably, three of the vulnerabilities have been highlighted for their potential impact and the contributions of their discoverers:

CVE IDSeverityDescription
CVE-2025-6555MediumUse after free in Animation
CVE-2025-6556LowInsufficient policy enforcement in Loader
CVE-2025-6557LowInsufficient data validation in DevTools

The remaining vulnerabilities, while not detailed publicly at this time, are also considered significant.

Google typically withholds full details of such bugs until a majority of users have updated, to prevent exploitation in the wild.

In some cases, information may remain restricted if the vulnerabilities exist in third-party libraries that have yet to be patched by other projects.

The Chrome team strongly encourages all users to update their browsers as soon as possible to benefit from these important security enhancements.

Users can check for updates by navigating to the “About Google Chrome” section in their browser settings, which will automatically trigger the update process.

Google expressed its gratitude to the security researchers who contributed to this release, stating:

This update underscores Google’s proactive approach to browser security, with regular patches and a robust bug bounty program that rewards researchers for their efforts in keeping Chrome users safe.

Find this News Interesting! Follow us on Google News, LinkedIn, and X to Get Instant Updates

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Hot this week

How To Access Dark Web Anonymously and know its Secretive and Mysterious Activities

What is Deep Web The deep web, invisible web, or...

How to Build and Run a Security Operations Center (SOC Guide) – 2023

Today’s Cyber security operations center (CSOC) should have everything...

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer's popularity and remote access capabilities make it an...

Web Server Penetration Testing Checklist – 2026

Web server pentesting is performed under three significant categories: identity,...

ATM Penetration Testing – Advanced Testing Methods to Find The Vulnerabilities

ATM Penetration testing, Hackers have found different approaches to...

Cling Malware Masquerades as Google STUN Traffic to Control Compromised IoT Devices

A newly identified IoT botnet, Cling, disguises its command-and-control...

Microsoft Warns ClickFix Attacks Use Fake CAPTCHA Lures to Execute Malicious Commands

Microsoft Threat Intelligence has identified a ClickFix campaign in...

Critical GitLab AI Gateway Flaw Lets Attackers Execute Arbitrary Commands

GitLab has issued emergency security updates for a critical...

AWS AI Agent Vulnerabilities Let Attackers Bypass Authentication and Steal Credentials

AWS has released security fixes for four vulnerabilities affecting...

Citrix NetScaler Appliances Reboot Repeatedly After 0-Day Security Update

Citrix NetScaler administrators report repeated appliance crashes and forced...

Sony PS5 Relapse Jailbreak Exploit Uses JSC Memory Corruption and Kernel UAF

A newly released PlayStation 5 jailbreak chain, called Relapse,...

Zammad Vulnerabilities Let Attackers Execute Code and Escalate Privileges to Root

Two critical vulnerabilities in the open-source Zammad helpdesk and...

Safari History Database Tags Can Reveal Users’ Browsing Themes in Forensic Investigations

Safari's History database contains a lesser-known tagging artifact that...

Related Articles

Recent News