Security News > 2024 > April > Google fixes one more Chrome zero-day exploited at Pwn2Own

Google has fixed another zero-day vulnerability in the Chrome browser, which was exploited by security researchers during the Pwn2Own hacking contest last month.
One week ago, Google fixed two more Chrome zero-days exploited at Pwn2Own Vancouver 2024.
Mozilla also patched two Firefox zero-days exploited by Manfred Paul at this year's Pwn2Own Vancouver competition on the same day the bugs were exploited.
In total, Google patched four Chrome zero-days this year, with the fourth addressed in January as an actively exploited zero-day that enabled attackers to crash unpatched browsers or access sensitive information due to an out-of-bounds memory access weakness in the V8 JavaScript engine.
Google fixes Chrome zero-days exploited at Pwn2Own 2024.
Google fixes two Pixel zero-day flaws exploited by forensics firms.
News URL
Related news
- New Chrome Zero-Day Actively Exploited; Google Issues Emergency Out-of-Band Patch (source)
- Google patches new Chrome zero-day bug exploited in attacks (source)
- Google fixes Chrome zero-day with in-the-wild exploit (CVE-2025-5419) (source)
- Google Drops Cookie Prompt in Chrome, Adds IP Protection to Incognito (source)
- Google: 97 zero-days exploited in 2024, over 50% in spyware attacks (source)
- Google Reports 75 Zero-Days Exploited in 2024 — 44% Targeted Enterprise Security Products (source)
- Google Rolls Out On-Device AI Protections to Detect Scams in Chrome and Android (source)
- Google Chrome to use on-device AI to detect tech support scams (source)
- Google Chrome to block admin-level browser launches for better security (source)
- Google fixes high severity Chrome flaw with public exploit (source)