---
title: "Google Chrome users are under high risk bug says Government alert"  
description: "Indian government has issued high-risk warning for Google Chrome users, and has urged immediate update."  
author: "Anonymous User"  
published: 2024-03-15  
updated: 2024-03-16  
canonical: https://www.mindstick.com/news/3820/google-chrome-users-are-under-high-risk-bug-says-government-alert  
category: "google"  
tags: ["news", "google cache", "cyber attacks", "government"]  
reading_time: 2 minutes  

---

# Google Chrome users are under high risk bug says Government alert

Recently, the Indian [National Security](https://answers.mindstick.com/qa/106107/how-does-the-national-security-council-function) Agency, CERT-In, because of its high-risk alert to the users of popular web browser Google Chrome. This advisory is out as a response to multiple vulnerability exposures detected for Google Chrome versions V122.0.6261.11/2 and after on Windows and Mac systems. These vulnerabilities are categorized with a HIGH severity rating as information of their high level of threat to users' privacy.

## Vulnerabilities Exploited by Attackers

According to the CERT-In's advisory, Google Chrome possesses a set of identified vulnerabilities that could lead to [data breaches](https://www.mindstick.com/articles/12484/data-breaches-could-cost-indian-firms-more-this-year-ibm) and malicious attacks on the integrity of the system. These vulnerabilities include:

**1. Use-after-free in FedCM Component:** This is a vulnerability, which even after use of the browser results in its memory being manipulated which may lead to unauthorized [code execution](https://www.mindstick.com/forum/160098/explain-the-difference-between-synchronous-and-asynchronous-code-execution-in-javascript).

**2. Issues in V8** [**JavaScript Engine:**](https://www.mindstick.com/interview/33775/what-is-a-javascript-engine) Vulnerabilities regarding unauthorized memory access and inappropriate execution in the V8 JavaScript engine, which leads to code injection or browser shutdown, is a possibility for attackers.

**[Potential Risks](https://www.mindstick.com/forum/158111/what-are-some-ethical-considerations-and-potential-risks-associated-with-the-use-of-nanotechnology) and Consequences**

If exploited by malicious actors, these vulnerabilities could lead to dire consequences for Google Chrome users:

**1. Data Breaches:** Intruders can get into a browser and get hold of the data stored there that users consider private and important, like their logins, credit card details, or [personal information](https://answers.mindstick.com/qa/102585/how-to-secure-personal-information-on-a-laptop).

**2.** [**Malware**](https://yourviews.mindstick.com/story/3326/how-to-protect-your-computer-from-malware) **Installation:** The malware installation on users' devices may follow and the attackers will try to steal data further or even make the hacked computers tools for the criminals.

**3. System Takeover:** At the end, cybercriminals could operate users' systems to complete disarray or use them as a base to propagate additional attacks.

## Mitigation Measures

However, Google rapidly took necessary measures including issuing [security updates](https://answers.mindstick.com/qa/50016/is-it-true-that-i-have-to-pay-to-upgrade-os-x-every-1-2-years-or-no-longer-receive-security-updates) to tackle these security loopholes. As advised by CERT-In, users who are using Google Chrome should immediately update their installations to version 122.0.6261.11/2 or later. The user can achieve this porch by navigating to "Settings" > "About" > "Chrome" which is located in the browser.

---

Original Source: https://www.mindstick.com/news/3820/google-chrome-users-are-under-high-risk-bug-says-government-alert

Copyright © MindStick Software Pvt. Ltd. This Markdown version is provided for developers, AI systems, and offline reading.
