- By Alex David
- Sat, 31 Jan 2026 06:58 PM (IST)
- Source:JND
The Indian Computer Emergency Response Team (CERT-In) on Thursday released new security advisories for Apple macOS and Google Chrome users, alerting them about the latest vulnerabilities that may risk their data theft, system information leak as well as exploitation. The advisories cover vulnerabilities in Apple’s Pages and Keynote apps and a high-severity-rated bug in Google Chrome’s desktop browser. CERT-In has recommended users and organisations immediately apply patches on Windows systems through updating all applications, although users do not operate as or use the Administrator accounts until updated software is available.
Apple Pages and Keynote Vulnerabilities
In an advisory issued on January 29 (CIVN-2026-0056), CERT-In spoke of vulnerabilities in Pages and Keynote versions prior to 15.1.
ALSO READ: iPhone Face Recognition: Apple's Revolutionary Face Reading Technology; Understanding Without Words
Key details:
- Issues caused by an out-of-bounds read in Pages
- Error found in the QuickLook component used by Keynote
- Exploitation possible via specially crafted documents
- Could lead to unauthorised access to sensitive information
Four of the bugs were resolved in Pages 15.1 and Keynote 15.1, which Apple made available on January 28 for macOS Sequoia 15.6 and later.
CVE ID | Affected App |
CVE-2025-46316 | Pages |
CVE-2025-46306 | Keynote |
Google Chrome Remote Code Execution Flaw
The cyber agency also issued a high-severity warning for Google Chrome on advisory CIVN-2026-0051, which was announced on January 28.
Affected versions:
- Before 144.0.7559.109 / 144.0.7559.110 on Windows and macOS
- Before 144.0.7559.109 on Linux
The vulnerability is due to the improper implementation of Chrome’s Background Fetch API and could be exploited to execute arbitrary code by sending a specially crafted request.
The CVE ID is CVE-2026-1504, and the risk level of it is also high.
Google addressed the issue in its Stable Channel update released on January 27.
ALSO READ: AI Trade Secrets Theft: Former Google Engineer Found Guilty of Stealing AI Secrets for China
CERT-In’s Recommendation
CERT-In has advised users to:
- Install the latest updates from Apple and Google
- Review official security release notes
- Avoid opening suspicious documents or links
The latest advisories by CERT-In underscore increasing risks from unpatched software on popular platforms such as macOS and Google Chrome. With bugs that could potentially leak sensitive data or be used to execute code remotely, waiting for updates can be an invitation for hackers.
