Red Hot Cyber
Cybersecurity is about sharing. Recognize the risk, combat it, share your experiences, and encourage others to do better than you.
Cybersecurity is about sharing. Recognize the risk,
combat it, share your experiences, and encourage others
to do better than you.
Redhotcyber Banner Sito 320x100px Uscita 101125
HackTheBox 970x120 1
Google Chrome 143 Patch Fixes Critical V8 JavaScript Vulnerability

Google Chrome 143 Patch Fixes Critical V8 JavaScript Vulnerability

3 December 2025 12:57

Google has released Chrome 143 for Windows, macOS, and Linux; the release contains an important patch. The new version ( 143.0.7499.40 for Linux and 143.0.7499.40/41 for Windows and macOS) addresses 13 vulnerabilities, including a critical vulnerability in the JavaScript V8 engine, CVE-2025-13630, a type confusion issue.

This is CVE-2025-13630, discovered by cybersecurity researcher Shreyas Penkar (@streypaws) and awarded a $11,000 bounty by Google. The bug is a favorite target for exploit writers, as such flaws sometimes allow exploits to escape the browser sandbox and execute third-party code.

Therefore, the released patch is one of the most important of the release. In addition to V8, the update also fixes other serious issues: CVE-2025-13631 (Google Updater) is a faulty implementation in the updater component discovered by researcher Yota Domingos.

Google offered a $3,000 reward for this discovery. The bug could have allowed a local attacker to hijack the update process or escalate privileges.

CVE-2025-13633, a Use-After-Free bug, was discovered by Google’s internal team. These bugs often cause crashes or code execution.

while CVE-2025-13632 (DevTools) is a high severity vulnerability in developer tools discovered by Leandro Teles.

The reward amount has not yet been announced. As usual, Google keeps the details of the vulnerabilities secret to reduce the risk of them being exploited in attacks before users update.

Follow us on Google News to receive daily updates on cybersecurity. Contact us if you would like to report news, insights or content for publication.

Cropped RHC 3d Transp2 1766828557 300x300
The editorial staff of Red Hot Cyber is composed of IT and cybersecurity professionals, supported by a network of qualified sources who also operate confidentially. The team works daily to analyze, verify, and publish news, insights, and reports on cybersecurity, technology, and digital threats, with a particular focus on the accuracy of information and the protection of sources. The information published is derived from direct research, field experience, and exclusive contributions from national and international operational contexts.