Advisory

Google fixes high severity flaws in Chrome, time to update

Take action: If you are using Google Chrome or other Chromium based browsers (Edge, Brave, Opera...) patch as soon as possible. It's not a panic mode patch, but a very wise choice.


Learn More

Google has issued an update advisory for the users of the Chrome browser across desktop and mobile platforms.

Chrome version 123, released on March 19th fixes for 12 security issues. Among these, the most critical one is a high-risk vulnerability within Chrome's V8 JavaScript engine, tracked as CVE-2024-2625 (CVSS score 8.8). This flaw, alongside five other vulnerabilities rated as medium risk, poses potential risks including the injection and execution of code.

Google limits detailed information on the vulnerabilities to prevent exploitation, especially before a substantial number of users have updated their browsers.

The fixed versions are:

  • Chrome 123.0.6312.58/59 for Windows and macOS,
  • Chrome 123.0.6312.58 for Linux,
  • Chrome 123.0.6312.40 for Android
  • Chrome 123.0.6312.52 for iOS

Other browsers based on the Chromium engine are expected to follow Google's lead in updating to the latest version to address these security vulnerabilities. As of now, browsers like Microsoft Edge, Brave, Vivaldi, and Opera have yet to update to Chromium 123.

Google fixes high severity flaws in Chrome, time to update