comscore

Google Chrome Desktop Faces High Risk: Update Immediately, Warns CERT-In

CERT-In warns of multiple security flaws in Google Chrome that could let hackers steal data or control your system. What should you do?

Published By: Divya | Published: Oct 31, 2025, 09:55 PM (IST)

  • whatsapp
  • twitter
  • facebook
  • whatsapp
  • twitter
  • facebook

India’s cybersecurity agency, Indian Computer Emergency Response Team (CERT-In), has issued a “HIGH severity” advisory for the desktop version of Google Chrome. According to the notice, multiple vulnerabilities in older versions of the browser could let a remote attacker execute malicious code, bypass security restrictions or steal sensitive information just by the user visiting a rigged web page. The issue affects Chrome on Windows, macOS and Linux systems.  news Also Read: Pixel 9a gets Rs 10,000 price cut just before Pixel 10a launch: How to grab the deal

CERT-In reports that a range of flaws has been uncovered in Chrome’s core components – issues like type-confusion in V8 (Chrome’s JavaScript engine), use-after-free bugs, incorrect handling in media and UI components, and policy bypasses in extensions. These vulnerabilities make it possible for attackers to run codes on your system, gain elevated permissions or access your data without your knowledge. The attack vector is simple: trick the user into visiting a compromised web page. news Also Read: Google Meet makes presentations easier with new feature

Who Are Affected?

Desktop users of Chrome on Windows, Mac and Linux systems-especially those running older versions-are at risk. According to CERT-In’s advisory, affected versions include: news Also Read: Found your personal info on Google? New tool helps you remove deepfakes faster

  • Chrome versions prior to 136.0.7103.113/.114 on Windows & Mac, and
  • Versions prior to 136.0.7103.113 on Linux. 

In many cases, the flaws are already being targeted in the wild, making the urgency of updating all the more serious. 

How Can It Affect You?

If exploited, these Google Chrome vulnerabilities can lead to:

  • Remote code execution (essentially handing control to the attacker)
  • Denial of Service (browser or system crashes)
  • Disclosure of personal or sensitive data
  • System compromise through malicious extensions or websites 

In simple words, your browser could become a gateway to much deeper system trouble.

Add Techlusive as a Preferred SourceAddTechlusiveasaPreferredSource

What you should do

CERT-In strongly urges users and organisations to update Google Chrome without delay – use the “About Chrome” menu to check and install the latest version. Moreover, it is suggested to avoid visiting untrusted links or pages. Make sure to restart your browser after the update and enable automatic updates if possible, so you won’t fall behind.