CISA Issues Critical Chrome 0-Day Alert: Don’t Wait To Update

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding a critical vulnerability in Google Chrome that could lead to severe security breaches. Users are urged to update their browsers immediately to protect against potential attacks aimed at leaking sensitive data.

Key Points

  • CISA has added a critical Chrome 0-day vulnerability (CVE-2025-4664) to its Known Exploited Vulnerabilities catalog.
  • The flaw allows attackers to leak cross-origin data through malicious HTML files.
  • Google has rolled out updates for Chrome versions “136.0.7103.113/.114” for various operating systems.
  • Users should ensure their browsers are updated promptly to avoid exploitation.
  • CISA encourages organisations to prioritise the remediation of known vulnerabilities as a key part of their security strategy.

Why should I read this?

If you use Google Chrome (and let’s be honest, who doesn’t?), this article is a must-read! It serves as a timely reminder to take your online security seriously. With attackers actively exploiting this vulnerability, you really don’t want to wait around—updating your browser now could save you a great deal of headache later!