Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Chrome 138, Firefox 140 Patch Multiple Vulnerabilities

Chrome 138, Firefox 140 Patch Multiple Vulnerabilities

Posted on June 25, 2025June 25, 2025 By CWS

Recent steady iterations of Chrome and Firefox had been launched on Wednesday with patches for 2 dozen vulnerabilities throughout the favored net browsers, together with high-severity reminiscence security flaws.

Chrome 138 has arrived with 11 safety fixes, together with three for medium- and low-severity bugs reported by safety researchers.

These embrace a use-after-free defect in Animation for which Google handed out a $4,000 bug bounty reward, and an inadequate coverage enforcement subject in Loader and an inadequate information validation flaw in DevTools that earned the reporting researchers $1,000 rewards every.

The newest Chrome iteration is now rolling out as model 138.0.7204.49 for Linux and as variations 138.0.7204.49/50 for Home windows and macOS.

Google makes no point out of any of the addressed vulnerabilities being exploited in assaults, however customers are suggested to replace their browsers as quickly as attainable.

On Wednesday, Mozilla dropped Firefox 140 to the steady channel with patches for 13 safety defects, and introduced updates for Firefox ESR 128.12 and Firefox ESR 115.25.

Two of the CVEs addressed with the most recent Firefox launch are high-severity reminiscence security bugs, specifically a use-after-free subject in FontFaceSet and reminiscence corruption defects that, with sufficient effort, might be exploited for distant code execution.

The replace additionally fixes six medium-severity vulnerabilities resulting in the publicity of a persistent UUID to determine the browser, a scarcity of warning when opening information with the terminal extension, coverage bypass, phishing assaults on Android, safety checks bypass, and cross-site scripting assaults.Commercial. Scroll to proceed studying.

Firefox ESR 128.12 was rolled out with patches for 5 of those vulnerabilities, whereas Firefox ESR 115.25 arrived with two fixes. Mozilla makes no point out of any of those bugs being exploited within the wild.

Associated: Chrome 137 Replace Patches Excessive-Severity Vulnerabilities

Associated: Chrome, Firefox Updates Resolve Excessive-Severity Reminiscence Bugs

Associated: Google Researchers Discover New Chrome Zero-Day

Associated: Chrome 137, Firefox 139 Patch Excessive-Severity Vulnerabilities

Security Week News Tags:Chrome, Firefox, Multiple, Patch, Vulnerabilities

Post navigation

Previous Post: Mainline Health, Select Medical Each Disclose Data Breaches Impacting 100,000 People
Next Post: Beware the Hidden Risk in Your Entra Environment

Related Posts

Cybersecurity Updates: ATT&CK Council, Russian Cyber Tactics, iOS Vulnerabilities Cybersecurity Updates: ATT&CK Council, Russian Cyber Tactics, iOS Vulnerabilities Security Week News
SonicWall Says Recent Attacks Don’t Involve Zero-Day Vulnerability SonicWall Says Recent Attacks Don’t Involve Zero-Day Vulnerability Security Week News
Root Evidence Launches With .5 Million in Seed Funding Root Evidence Launches With $12.5 Million in Seed Funding Security Week News
Europol Says Qilin Ransomware Reward Fake Europol Says Qilin Ransomware Reward Fake Security Week News
Inti De Ceukelaire: Crafting Ethical Hacks Inti De Ceukelaire: Crafting Ethical Hacks Security Week News
Vibe Coding: When Everyone’s a Developer, Who Secures the Code? Vibe Coding: When Everyone’s a Developer, Who Secures the Code? Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • VMware Fusion Vulnerability Receives Critical Update
  • Critical Vulnerability in MongoDB Risks Data Exposure
  • Windows Zero-Day Exploits: YellowKey and GreenPlasma Revealed
  • Fragnesia Linux Kernel Vulnerability Allows Root Access
  • NGINX Vulnerability Allows Remote Code Execution

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • VMware Fusion Vulnerability Receives Critical Update
  • Critical Vulnerability in MongoDB Risks Data Exposure
  • Windows Zero-Day Exploits: YellowKey and GreenPlasma Revealed
  • Fragnesia Linux Kernel Vulnerability Allows Root Access
  • NGINX Vulnerability Allows Remote Code Execution

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark