Google fixes actively exploited sandbox escape zero day in Chrome
ID: e7979685-afa0-5284-9da5-0b66966e9f23
STIX ID: report--e7979685-afa0-5284-9da5-0b66966e9f23
Feed Name: Bleeping Computer
Threat Score
Google released a critical Chrome update (138.0.7204.157/158) to patch CVE-2025-6558 — a high-severity (8.8) ANGLE/GPU vulnerability actively exploited in the wild to escape the browser sandbox and execute code in the GPU process — and addressed several other V8 and WebRTC flaws; users are advised to update immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
