Google Chrome Vulnerabilities
Key Takeaways
- Urgent Action Required: Google Chrome users must update immediately to version 128.0.6613.119/.120 to fix actively exploited security flaws.
- Active Threat: The update addresses six critical vulnerabilities that hackers are currently using to attack systems.
- Severe Impact: These flaws allow for arbitrary code execution, enabling attackers to install programs, steal data, or create unauthorized accounts.
- High Risk for Admins: Users logged in with administrative privileges are at greater risk of total system compromise compared to those with restricted access.
Google Chrome Vulnerabilities: Critical Security Alert
In today’s SensCy Cyber Alert, your SensCy team recommends Google Chrome Browser users to install the new Chrome Version immediately. The new update patches six critical Google Chrome vulnerabilities currently being exploited by threat actors.
Multiple security flaws have been discovered in the browser, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these Google Chrome vulnerabilities could allow for arbitrary code execution in the context of the logged-on user. Depending on the privileges associated with the user, an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
The risk level varies based on user permissions. Users whose accounts are configured to have fewer user rights on the system could be less impacted by these Google Chrome vulnerabilities than those who operate with administrative user rights.
To ensure your organization is protected against these Google Chrome vulnerabilities, please review the new available updates below:
- Windows and Mac: Chrome prior to 128.0.6613.119/.120
- Linux: Chrome prior to 128.0.6613.119
How to check for new updates:
For new Google Chrome updates, follow these steps:
- On your computer, open Chrome.
- At the top right, click the ellipsis (…).
- Click Help and then About Google Chrome.
- Click Update Google Chrome.
Important: If your Chrome browser is up-to-date, you will see a blue check mark and the words “Chrome is up to date.”
Frequently Asked Questions (FAQ)
1. What does it mean that vulnerabilities are “currently exploited”?
When a vulnerability is described as “currently exploited” or “exploited in the wild,” it means that hackers are actively using this specific flaw to attack users right now. This is different from a theoretical vulnerability found by researchers, making the update urgent.
2. What damage can “Arbitrary Code Execution” cause?
Arbitrary code execution allows an attacker to run any command they want on your computer. This effectively hands over the “keys” to your device, allowing them to install ransomware, steal login credentials, or use your computer as part of a botnet.
3. Why are administrative users at higher risk?
If a hacker compromises a user account that has administrative rights, they gain full control over the operating system. They can disable antivirus software, delete system files, and create new hidden admin accounts. Standard users (non-admins) have restricted access, which limits the scope of damage a hacker can inflict.
4. How can I verify my Chrome version?
Open Chrome, click the three vertical dots in the top-right corner, select “Help,” and then “About Google Chrome.” The browser will display the current version number. You need version 128.0.6613.119 or higher to be safe.
If you need additional assistance, use this Google Chrome link.

