Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

The Chrome warning refers to CVE-2025-4664, a vulnerability that a May 2025 HotHardware report said was being exploited. That report described potential cross-origin data exposure. Its suggested Chrome version threshold dates from May 2025 and is no longer suitable as current patch guidance. Update Chrome using its built-in updater, then check the installed version against Google’s current release notes or your organization’s browser policy.

What the Chrome security warning means

HotHardware’s May 16, 2025 report identified the flaw as CVE-2025-4664 and said it affected the Chromium Loader. It described a risk of cross-origin data leakage, meaning information could potentially be exposed across website boundaries. That is a reported risk, not evidence that passwords, payment details, addresses, or other specific information were actually stolen.

The report linked the warning to CISA’s Known Exploited Vulnerabilities catalog. CISA’s page, titled CISA Adds Three Known Exploited Vulnerabilities to Catalog, is dated May 15, 2025; the page content was not available to independently confirm its technical details here. The active-exploitation claim should therefore be understood as what the HotHardware report said, rather than as a newly verified status for October 2026.

How to update Chrome now

  1. Open Chrome and select the three-dot menu in the upper-right corner.

    Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
  2. Choose Help, then About Google Chrome. Chrome checks for updates on this page.

  3. If an update is available, let it install and select Relaunch if prompted. Save any work in open tabs first.

  4. Return to About Google Chrome to confirm the browser reports that it is up to date. Compare the installed version with Google’s current Chrome Releases information for your platform, or follow your organization’s managed-browser policy.

Which Chrome version fixes the flaw?

The May 2025 report advised users to run a version newer than 136.0.7103.113. That is historical guidance, not a current October 2026 minimum. A version number only makes sense alongside its release date and platform; use the current Chrome update check and official release information rather than relying on that old threshold.

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

What if you use another Chromium-based browser?

The HotHardware report generalized the concern to Chromium-based browsers, but the available vendor advisories were not verified here. Do not assume every browser built on Chromium has the same affected versions or fix. Check the browser maker’s own security advisory and update channel, then install the current supported update for that browser and operating system.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

For work or school devices

If Chrome is managed by an employer, school, or other organization, updates may be controlled centrally. Follow the administrator’s browser-update policy and report a browser that remains behind the required version. Avoid bypassing management controls; administrators can confirm the approved version and deployment status for the device.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.