Google Chrome, Microsoft Edge Security Flaws: CERT-In Asks Users to Update to Latest Versions With Security Fixes

Users can update their current Google Chrome and Microsoft Edge browsers to the latest version.

Advertisement
Written by Dhruv Raghav, Edited by David Delima | Updated: 16 October 2025 12:09 IST
Highlights
  • Bad actors can take out DoS attacks on Edge
  • Google and Microsoft have yet to patch the flaws
  • Microsoft Edge’s Chromium engine version is at risk

Hackers can gain remote access to systems and run scripts

Photo Credit: Pexels/Shimazaki

The Indian Computer Emergency Response Team (CERT-In) has warned that hackers can gain unauthorised access to users systems by misusing security flaws on older versions of Google Chrome and Microsoft Edge (Chromium-based) browsers. These vulnerabilities would enable them to execute remote code and denial-of-service (DoS) attacks. The security flaws were highlighted by CERT-In on October 15. Users can update their browsers to the latest versions to stay protected from these flaws.

Browser Flaws Let Hackers Execute Arbitrary Code Remotely

In its latest vulnerability notes (CIVN-2025-0258 and CIVN-2025-0256), CERT-In warned users about a high-risk vulnerability that compromises the security of Google Chrome and Microsoft Edge browsers. The vulnerability was found in Google Chrome for Desktop versions older than 141.0.7390.107/.108 for Windows, Mac, and Linux, as well as Chromium-based Microsoft Edge Stable Channel 141.0.3537.71 and older versions.

On Chrome for Desktop, the security flaw allows bad actors to execute arbitrary code on a user's desktop remotely. While this might compromise a user's desktop security, it can also lead to service disruptions. CERT-In highlighted that the vulnerability is related to “Use after free in Safe Browsing”, which can be exploited by a hacker by sending a specially crafted request to the device.

Advertisement

The above-mentioned versions of the Microsoft Edge browser running on the Chromium engine can grant hackers unauthorised access to a device for executing arbitrary code, too. They can also execute denial-of-service (DoS) attacks on the targeted system.

CERT-In pointed out that the security flaw exists because of “Heap buffer overflow in Sync and Use after free in storage”. A bad actor could use these vulnerabilities by persuading a victim to visit a specially crafted web page.

Both tech giants, Google and Microsoft, are yet to patch these security flaws, which also puts their users' privacy at risk. Hence, people are advised to update their respective browsers to their latest available versions as a safeguarding measure.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Redmi Note 15 Series India Launch Timeline, Price and Features Leaked
  2. OnePlus 15 Launch Details Likely to Be Announced on October 17
  3. Oppo Watch S With Temperature Monitoring Launched at This Price
  4. Honor's Robot Phone With a Pop-Up Camera Will Debut at MWC 2026
  5. Oppo Find X9 Pro, Find X9 Launched With Dimensity 9500 SoC: See Price
  6. Google Offers Up to 2TB of Storage Across Gmail and Photos for Rs. 11
  7. Realme GT 8 Pro Colourways Revealed; Realme GT 8 to Run on This Chipset
  8. Vivo Announces OriginOS 6 for Vivo and iQOO Handsets Globally
  9. Dreame F10 Review: Good Cleaning Performance for an Affordable Price
  10. Sony Confirms Silent Hill 2 Remake for PS Plus Game Catalog in October
  1. SpaceX Launches 21 Satellites With Second Falcon 9 Launch Of The Year
  2. Bridgerton Season 4 To Begin Streaming on Netflix in 2026: Know When and Where to Watch it Online
  3. Samsung Galaxy S26 Ultra Design, Black Colourway Leaked via Case Manufacturer
  4. NASA Plans To Deorbit The ISS By 2030, to Transition to Private Space Stations
  5. Meta Inks Multi-Year Partnership With Arm to Help Scale Future Meta AI Features and Models
  6. Anand Deverakonda’s Takshakudu Set for OTT Release on Netflix: All You Need to Know
  7. World Liberty Financial Explores Real Estate Tokenisation Using USD1 Stablecoin
  8. Oppo Find X9 Pro, Oppo Find X9 Launched With Dimensity 9500 SoC, Hasselblad-Tuned Cameras: Price, Features
  9. Anthropic Releases Claude Haiku 4.5 as a Fast and Cost-Effective AI Model
  10. Oppo Watch S Launched With Temperature Monitoring, 16-Channel SpO2 Sensor: Price, Specifications
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.