"CVE-2025-10585, is a type confusion flaw in the V8 JavaScript and WebAssembly engine. [] can lead to system crashes, arbitrary code execution, and when chained with other bugs, potentially a full system compromise via a malicious HTML page."
"it's likely that this CVE was abused as a zero-day to steal sensitive information and snoop on high-value targets."
pull down to refresh
related posts
This is why I use Qubes on all my laptops and desktops. Qubes basically let's you do everything in separated VMs. So I do all my web browsing in disposable VMs, completely separate from the VMs I use to write and maintain code.
https://www.qubes-os.org/
wow, they say it's also what Snowden uses
not sure if (still) true though
I am more familiar with Brave Browser.
Don't worry, the Brave team doesn't include 0-days in their code. It would be too much of a vulnerability.
Brave patched in chromium
.186same day as Google did, into Brave1.82.170- same risk profile as Chrome.I bet it was sarcasm
Me too but still lol