Chrome and Firefox Updates Patch Dozens of Vulnerabilities

https://www.securityweek.com/wp-content/uploads/2025/01/Chrome-Firefox.jpeg

Google and Mozilla on Tuesday announced patches for dozens of vulnerabilities across Chrome and Firefox, including critical- and high-severity flaws.

A fresh Chrome 152 update has been rolled out with fixes for 26 bugs, two of which are critical-severity use-after-free issues in Shared Tab Groups (CVE-2026-84353) and WebGL (CVE-2026-84352).

The update also addresses nine high-severity security defects, including use-after-free, incorrect authorization, information leak, improper input validation, uninitialized resource, and buffer overflow weaknesses.

The remaining 15 vulnerabilities are medium- and low-severity issues. Per Google’s advisory, only three of the flaws were reported by external researchers, but no bug bounty reward has been disclosed.

The latest Chrome iteration is now rolling out as versions 152.0.7977.75/.76 for Windows and macOS, and as version 152.0.7977.75 for Linux.

Mozilla rolled out Firefox 155 with patches for 29 security defects, including 13 high-severity use-after-free, sandbox escape, and memory corruption issues.

Advertisement. Scroll to continue reading.

...

Copyright of this story solely belongs to securityweek.com. To see the full text click HERE

Read more