Saturday, March 8, 2025
CISA Exploit ListCybersecurityWeb Browsers

Google and Mozilla Patch High-Severity Vulnerabilities in Chrome and Firefox

by Justin Erickson

Google and Mozilla have released security updates addressing high-severity vulnerabilities in Chrome 133 and Firefox 135. For Chrome, Google patched CVE-2025-0444 and CVE-2025-0445, which could allow attackers to execute arbitrary code because of two use-after-free vulnerabilities. Firefox also had the use-after-free issues, and Mozilla patched CVE-2025-1009 and CVE-2025-1010 as a result. They also patched CVE-2025-1016 and CVE-2025-1020, which could be used for code execution. Google and Firefox both have not mentioned any active exploitation of these flaws. Despite this, users are urged to update their browsers immediately to the latest versions to mitigate the risk of exploitation. Enabling automatic updates and staying informed about security patches is essential for maintaining browser security.

Third-Party references:

Click the links below to learn more details. (Opens in a new tab/window.)