Chrome’s Mojo Jojo Moment: CISA Adds Exploited Flaw to Watchlist
The U.S. CISA has added a Google Chromium Mojo flaw to its Known Exploited Vulnerabilities catalog. This high-severity vulnerability, actively exploited in attacks on Russian organizations, prompted Google to release urgent fixes. Federal agencies have until April 17, 2025, to address this issue in their systems to prevent further exploits.

Hot Take:
**_Okay, Google, how about a vulnerability-free browser next time? It seems like every time we turn around, there’s another “Mojo” in the works. If only fixing these security issues was as easy as saying, “Hey Google, stop being vulnerable!”_**
Key Points:
– CISA adds Google Chromium Mojo flaw (CVE-2025-2783) to its Known Exploited Vulnerabilities catalog.
– The flaw was actively exploited in attacks targeting Russian organizations.
– Google released out-of-band fixes for the Chrome browser on Windows.
– Federal agencies must patch this flaw by April 17, 2025, per CISA directive.
– Details of the attacks and threat actors remain undisclosed.