Google and Mozilla announced on Tuesday the release of new security updates that patch several vulnerabilities in their popular browsers, Chrome and Firefox.
See also: CISA adds Oracle and Mitel vulnerabilities to KEV List

Google has released a Chrome 131 update that resolves four security flaws, including a high-severity type confusion flaw in the V8 JavaScript engine reported by an external researcher. Known as CVE-2025-0291 , the issue earned the researcher a $55,000 bug bounty, which suggests an attacker could exploit it to execute arbitrary code remotely.
As a class of memory security flaws, type confusion flaws in Chrome's V8 engine could allow malicious actors to leak sensitive information or completely compromise a system .
The latest iteration of Chrome is now released as versions 131.0.6778.264/.265 for Windows and macOS users and as version 131.0.6778.264 for Linux users.
See also: MediaTek RCE vulnerability affects millions of devices
In addition to Google and Chrome, Mozilla on Tuesday announced patches for 11 vulnerabilities in Firefox, including three high-severity flaws, two of which are memory security bugs that could potentially be exploited for remote code execution.

The third high-severity issue, tracked as CVE-2025-0244, is described as a Firefox for Android address bar spoofing flaw that is triggered when redirecting to an invalid protocol scheme.
The remaining eight vulnerabilities resolved in the latest version of Firefox are moderate severity issues that could lead to bypasses, address bar spoofing, elevation of privilege, errors, and improper certificate validation.
On Tuesday, Mozilla also announced the release of Firefox ESR 115.19 and Firefox ESR 128.6, which contain patches for some of the vulnerabilities addressed in Firefox 134.
Neither Google nor Mozilla are making any mention of any of these Chrome and Firefox vulnerabilities being exploited, but users are advised to update browsers as soon as possible.
See also: WordPress WPLMS: Plugins vulnerable to critical vulnerabilities
Security updates are a critical part of software maintenance, ensuring both the functionality and security of systems. They include bug fixes, performance improvements, or protection measures against new threats. Regular application of security updates is essential to maintaining the reliability and efficiency of technological infrastructures.
Source: securityweek
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
