CVE-2025-10585 Security Incident affecting Chromium V8
Evidence indicates that Chromium V8 is affected by a security issue. Exploitation evidence is classified as confirmed in the wild.
What Happened
Evidence indicates that Chromium V8 is affected by a security issue. Exploitation evidence is classified as confirmed in the wild.
Why This Matters
Current evidence identifies a security issue involving Chromium V8, but does not yet support a more specific impact claim.
Recommended Action
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. Confirm whether Chromium V8 is present in your environment and review the affected configuration.
Exposure
Sep 22, 2025 05:30
Sep 22, 2025 05:30
Exploitation status: CONFIRMED_IN_THE_WILD
Primary entities:
Authoritative Intelligence
Timeline
-
Incident first seen
Sep 22, 2025 05:30BugSkan first recorded this incident.
-
⚡ Weekly Recap: Chrome 0-Day, AI Hacking Tools, DDR5 Bit-Flips, npm Worm & More - The Hacker News
Sep 22, 2025 05:30thehackernews.com · Vulnerability
Sources
thehackernews.com · Sep 22, 2025 05:30
Google has released emergency security updates for Chrome to patch CVE-2025-10585, an actively exploited zero-day vulnerability. This critical type confusion flaw resides within the V8 JavaScript and WebAssembly engine, confirmed to be exploited in the wild.
Open publisher sourceWatchlist Match
Create an account to see which incidents overlap with the technologies you monitor.