Update Google Chrome now to fix this dangerous zero-day flaw

Chrome VPN
(Image credit: Future)

It's time to update your Chrome desktop browser on Mac, Windows or Linux once again to fix a dangerous "zero-day" flaw that is already being used to attack computer users.

Few details are yet available about the zero-day flaw. Google's Chrome blog post yesterday (July 15) notes that it involves "type confusion in V8," the JavaScript rendering engine used by Chrome, and that "Google is aware of reports that an exploit for CVE-2021-30563 [the flaw's catalogue number] exists in the wild."

This is the eighth zero-day flaw patched in Chrome this year, according to Bleeping Computer

Earlier this week, Google researchers said a "commercial surveillance company" had developed exploits for two of the older Chrome zero-days and sold them to nation-state intelligence agencies. A day later, Microsoft  and the University of Toronto's Citizen Lab  identified the company as Israeli spyware firm Candiru and said its customers were in the Middle East and the former Soviet Union.

Chrome 91.0.4472.164 patches seven other flaws, two others of which involve vulnerabilities in V8. Most of the flaws are categorized as being "high" severity, indicating that remote-code-execution — hacking over the internet — is possible.

How to update Chrome

To update Chrome on Windows and Mac, try closing and relaunching your browser. If that doesn't work, click the three vertical dots at the top right of the browser window. Scroll down and mouse over Help, then click About Google Chrome. 

A new tab will open and let you know which version of Chrome you have — you want to be on version 91.0.4472.164 — and it will download the update if you need it. After that, simply relaunch the browser.

Most Linux distributions will update Chrome as part of their rolling update schedule, but you might have to fiddle with the software-repository settings to make sure your build reaches out to the Google update servers.

Updating other Chromium-based browsers is similar. In Brave, click the three vertical lines in the top right corner, then scroll down to and click About Brave in the Settings menu. In Microsoft Edge, click the three vertical dots in the top right corner, then scroll down to and mouse over Help and Feedback and click About Microsoft Edge. 

In Opera and Vivaldi, you click the browser icon on the top left, then scroll down to and mouse over Help and select About. 

As of this writing midday Friday (July 16) in New York, none of these other Chromium-based browsers had been updated to the latest version.

Brave uses the same version-numbering system as Chrome and Chromium. Opera and Vivaldi use their own systems, but the Chromium build number is visible on the About pages under User Agent. In Edge, type "edge://version/" into the address bar and hit Enter or Return to see the the Chromium build number under User Agent.

Recent Chrome updates

Here's a list of the most recent Chrome updates so you can check to see if your browser is up to date. 

TOPICS
Paul Wagenseil

Paul Wagenseil is a senior editor at Tom's Guide focused on security and privacy. He has also been a dishwasher, fry cook, long-haul driver, code monkey and video editor. He's been rooting around in the information-security space for more than 15 years at FoxNews.com, SecurityNewsDaily, TechNewsDaily and Tom's Guide, has presented talks at the ShmooCon, DerbyCon and BSides Las Vegas hacker conferences, shown up in random TV news spots and even moderated a panel discussion at the CEDIA home-technology conference. You can follow his rants on Twitter at @snd_wagenseil.

Read more
Google Pixel 9 held in the hand.
Google just fixed a zero-day kernel flaw used by hackers and 47 other vulnerabilities — update your Android phone right now
Apple iPhone 16 Plus Review.
Apple just released an emergency security update for a flaw used in an ‘extremely sophisticated attack’ — update your devices right now
Windows
240 million Windows 10 users are vulnerable to six different hacker exploits — protect yourself now
and image of the Google Chrome logo on a laptop
Billions of Chrome users at risk from new browser-hijacking Syncjacking attack — how to stay safe
A hacker typing quickly on a keyboard
Hackers are posing as Apple and Google to infect Macs with malware — don’t fall for these fake browser updates
iPhone 16 Pro shown held in hand
Apple just patched its first zero-day flaw of the year — update your iPhone and Mac right now
Latest in Browsers
iPhone 16 Pro Max shown in hand
Your iPhone has a custom voice command feature — here's how to use it
iPhone 16 Pro Max shown in hand
You can change your iPhone's default browser — here's how
Google Chrome on Android
How to stop your personal data from appearing in Google searches
Opera Air
I just tested the world’s first mindful browser — it’s calmly convinced me to ditch Google Chrome
A photo of the Google Chrome logo on a white background, displayed on the screen of a large MacBook Pro which is situated on a table with green foliage behind.
Google Chrome just got three new modes — and it's a game changer for performance
Google Calendar app on iPhone
Google Calendar just got the dark mode we’ve been waiting for — here’s how to activate it
Latest in News
NYTimes Connections
NYT Connections today hints and answers — Friday, March 28 (#656)
Reddit logo and Reddit logo on phone
Reddit, X and MLB.TV were down — live updates on outage
Nintendo Switch 2 console, Joy-Con controllers and dock
The Switch 2's mysterious "C" button may have just been confirmed by Nintendo
Nintendo Switch virtual game card
Nintendo just announced 'Virtual Game Cards' ahead of Switch 2 launch
Gerard Butler as Detective Nick "Big Nick" O'Brien in "Den of Thieves 2: Pantera"
Netflix top 10 movies — here’s the 3 worth watching right now
Graphic screen displaying malware detection warning
This dangerous new Windows malware hides from your antivirus while impersonating a popular PC brand