Google this week released a security-themed Chrome browser makeover with patches 28 documented vulnerabilities, some serious enough to lead to code execution attacks.
The new browser refresh is now rolling out to Windows, Mac and Linux users as Chrome 100.0.4896.60.
Nine of the security defects identified by external researchers are rated high-severity. Use-after-free was the most common type of vulnerability among the issues reported externally, followed by inappropriate implementation.
[ READ: Google Attempts to Explain Surge in Chrome Zero-Day Exploits ]
Google said it paid out $52,000 in bug bounty rewards to the reporting researchers, but the final amount could be much higher, as the company has yet to determine the rewards to be handed out for half of the externally reported vulnerabilities.
The highest bug bounty reward was handed out to Wei Yuan of MoyunSec VLab for a medium severity use-after-free flaw in Shopping Cart.
Chrome 100 arrives less than a week after Google issued an emergency fix to address a zero-day vulnerability in the V8 JavaScript engine. There have been only two documented zero-days in Chrome this year.
Related: Federal Agencies Instructed to Patch New Chrome Zero-Day
Related: Google Issues Emergency Fix for Chrome Zero-Day
Related: North Korea Gov Hackers Caught Sharing Chrome Zero-Day

More from Ionut Arghire
- Ransomware Will Likely Target OT Systems in EU Transport Sector: ENISA
- Ransomware Gang Publishes Data Allegedly Stolen From Maritime Firm Royal Dirkzwager
- Zoom Paid Out $3.9 Million in Bug Bounties in 2022
- Malicious NuGet Packages Used to Target .NET Developers
- Google Pixel Vulnerability Allows Recovery of Cropped Screenshots
- Millions Stolen in Hack at Cryptocurrency ATM Manufacturer General Bytes
- NBA Notifying Individuals of Data Breach at Mailing Services Provider
- Adobe Acrobat Sign Abused to Distribute Malware
Latest News
- Burnout in Cybersecurity – Can it be Prevented?
- Spain Needs More Transparency Over Pegasus: EU Lawmakers
- Ransomware Will Likely Target OT Systems in EU Transport Sector: ENISA
- Virtual Event Today: Supply Chain & Third-Party Risk Summit
- Google Suspends Chinese Shopping App Amid Security Concerns
- Verosint Launches Account Fraud Detection and Prevention Platform
- Ransomware Gang Publishes Data Allegedly Stolen From Maritime Firm Royal Dirkzwager
- Zoom Paid Out $3.9 Million in Bug Bounties in 2022
