Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions

Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions

Google has released security updates for Chrome to fix four vulnerabilities, including a zero-day that has been exploited in the wild. The high-severity flaw, CVE-2025-10585, is a type confusion bug in the V8 engine that could lead to arbitrary code execution. #CVE-2025-10585 #V8JavaScriptEngine

Keypoints

  • Google issued security updates for Chrome to address four vulnerabilities, including one actively exploited in the wild.
  • The zero-day vulnerability, CVE-2025-10585, is a type confusion issue in the V8 JavaScript and WebAssembly engine.
  • Type confusion flaws can cause unexpected software behavior, potentially leading to remote code execution or crashes.
  • The flaw was discovered by Google’s Threat Analysis Group in September 2025.
  • Users are advised to update their browsers promptly to mitigate the risk from this and other vulnerabilities.

Read More: https://thehackernews.com/2025/09/google-patches-chrome-zero-day-cve-2025.html