logo

Google tags a tenth Chrome zero-day as exploited this year

ID: 6528f16d-eb7b-5746-9502-92b85656a92b

STIX ID: report--6528f16d-eb7b-5746-9502-92b85656a92b

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-08-26

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Google released fixes for two high-severity Chrome zero-day vulnerabilities (CVE-2024-7965 and CVE-2024-7971) that have been exploited in the wild; both are V8 JavaScript engine bugs (JIT/compiler backend/type confusion) that can allow heap corruption and potential remote code execution. Patches are available in Chrome 128.0.6613.84/.85 for Windows, macOS, and Linux, and Google is withholding some technical details while updates roll out; the article also enumerates multiple other Chrome zero-days fixed earlier in 2024.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.