WhatsApp hit by two zero-day flaws — update the app now

Smartphone showing WhatsApp
(Image credit: Shutterstock)

If you have WhatsApp installed on your phone, you should make sure that you’re updated to the latest version. Otherwise you are potentially putting your phone at risk, following the discovery of not one, but two zero-day flaws within the messaging app.

Over the past few days, reports have surfaced (via Naked Security) about the vulnerabilities. The good news is that WhatsApp had already identified and patched the flaws, sending out updates to the appropriate app stores. But the fact these were zero-day flaws means you need to double check that your version of the app is totally up to date.

A zero-day security flaw is, in simple terms, one where hackers have the advantage — exploiting a hole in security before the development team is aware of it. They have had “zero days” to work on fixing a vulnerability before it's discovered by external forces, in other words.

Other flaws are identified by different means, with no evidence that anyone outside the company is aware of them. Both are serious, but the zero-day flaw is arguably the worst of the two since users are very much at risk from bad actors from the get-go.

In this instance both flaws allowed potential remote code execution. As Naked Security puts it, this could allow for bad actors to booby-trap data and force the app to crash. More skilled hackers could potentially exploit the circumstances of a crash to cause other kinds of unauthorized activity. Normally this involves malware or trying to take remote control of the afflicted device. 

Bug descriptions suggest that one of the bugs required a call to connect before being triggered. The second one appears as though it could be triggered at other points you might be using WhatsApp. 

Similarly, if hackers are able to access your WhatsApp app, it means they can access all your private communications and contacts. That could easily be exploited for a variety of purposes, least of which is selling the information on to others.

Frankly, none of this sounds like a lot of fun. Which is why you should make sure WhatsApp is all up to date. Naked Security notes that anything newer than version 2.22.16.12, on Android and iOS is safe from both these flaws. 

Currently the Apple App Store is offering version 2.22.19.78 and Google Play has version 2.22.19.76. In short, both platforms appear to be well past the danger zone — provided you’re running the latest version of the software. 

So be sure to go into your respective app store and make sure you don’t have any updates pending. And if there are, get them downloaded pronto.

Read next: A new iOS tool could be a malware nightmare, and this is how iPhone owners can stay safe.

TOPICS
Tom Pritchard
UK Phones Editor

Tom is the Tom's Guide's UK Phones Editor, tackling the latest smartphone news and vocally expressing his opinions about upcoming features or changes. It's long way from his days as editor of Gizmodo UK, when pretty much everything was on the table. He’s usually found trying to squeeze another giant Lego set onto the shelf, draining very large cups of coffee, or complaining about how terrible his Smart TV is.

Read more
Apple iPhone 16 held in the hand.
iOS 18.3.1 — update your iPhone right now to fix critical zero-day vulnerability
iPhone 16 Pro shown held in hand
Apple just patched its first zero-day flaw of the year — update your iPhone and Mac right now
Google Pixel 9 held in the hand.
Google just fixed a zero-day kernel flaw used by hackers and 47 other vulnerabilities — update your Android phone right now
Apple iPhone 16 Plus Review.
Apple just released an emergency security update for a flaw used in an ‘extremely sophisticated attack’ — update your devices right now
Windows
240 million Windows 10 users are vulnerable to six different hacker exploits — protect yourself now
How to tell if you've been blocked on WhatsApp
The best WhatsApp alternatives in 2025
Latest in Instant Messengers
How to delete TikTok
8 TikTok alternatives — where to go if the app gets banned
How to tell if you've been blocked on WhatsApp
New WhatsApp green screen bug is making the app unusable
The WhatsApp logo on a screen in front of a laptop
WhatsApp starts rolling out Events planning feature for group chants — here’s how it works
The WhatsApp logo on a screen in front of a laptop
WhatsApp looking to add AirDrop-esque feature to iPhones — what we know
The WhatsApp logo on a screen in front of a laptop
WhatsApp drops surprise design update — it's rounder and darker now
WhatsApp logo on iPhone
How to rejoin a group chat on WhatsApp
Latest in News
Apple Watch Series 10
Future Apple Watch models could get a surprising new feature — what we know
iPhone 16 Pro vs iPhone 16 Pro Max in hand showing displays
Forget iPhone 17 — iPhone 18 could get this huge upgrade
The new Husqvarna iQ series robot lawn mower.
Husqvarna’s new robot mowers offer GPS for less
Rendered images of rumored foldable iPhone.
Foldable iPhone report just revealed key details — here's what we know
NYTimes Connections
NYT Connections today hints and answers — Sunday, March 23 (#651)
NYT Strands on a cellphone
NYT Strands today — hints, spangram and answers for game #385 (Sunday, March 23 2025)