Advisory 90: Google Chrome Vulnerability CVE – 2025-6554
Release Date: 30th of June 2025
Impact : HIGH / CRITICAL
TLP Rating: Clear
CERT Vanuatu (CERTVU) and the Department of Communication and Digital Transformation (DCDT) provide the following advisory.
This alert is relevant to Organizations who utilize the above products. This alert is intended to be understood by technical users and systems administrators.
What is it?
Google Chromium V8 contains a type confusion vulnerability that could allow a remote attacker to perform arbitrary read/write via a crafted HTML Page. This vulnerability could affect multiple web browser that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.
What are the Systems affected?
Affected Versions;
- affected from 138.0.7204.96 before 138.0.7204.96
What this means?
The vulnerability could allow a remote attacker to perform arbitrary read/write via a crafted HTML Page.
Mitigation process
Update to latest Chrom Version
References
- https://www.cve.org/CVERecord?id=CVE-2025-6554
- https://chromereleases.googleblog.com/2025/06/stable-channel-update-for-desktop_30.html
- https://www.chromium.org/Home/chromium-security/
- Download advisory (English): Google Chrome Vulnerability CVE – 2025-6554