CVE-2025-6558: Chrome Flaw Lets Hackers Break the Sandbox

Red | Vulnerability Report
Download PDF

A zero-day flaw in Google Chrome (CVE-2025-6558) has been actively exploited in the wild, putting users at immediate risk. The issue stems from weak input validation in Chrome’s graphics components, allowing attackers to break out of the browser’s sandbox just by visiting an HTML page. Google responded quickly with an emergency patch (version 138.0.7204.157/.158), and users are strongly urged to update their browsers right away. Delaying the update could leave your system exposed to data theft, malware, or full compromise.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox

Cyber Horizons 2025

What Last Year’s Attacks Reveal About Today’s Risks

Watch the Webinar on-demand and get a FREE copy of our Cyber Horizons 2025 report.

Our Speakers
Speaker 1

Prateek Bhajanka Global Field CISO & Former Gartner Analyst Hive Pro Inc.

Speaker 2

Ankit Mani Manager Threat Intel HiveForce Labs

Speaker 3

Sreevani Tonipe Senior Threat Researcher HiveForce Labs