CERT-In has issued urgent warnings. Indian users face serious risks on macOS and Google Chrome. The agency highlights unpatched vulnerabilities. These flaws can lead to data theft or full system takeover.
First, Apple apps come under fire. CERT-In released advisory CIVN-2026-0056 on January 29. It targets Pages and Keynote on macOS. Versions before 15.1 remain vulnerable.
An out-of-bounds read affects Pages. Keynote suffers from a QuickLook component error. Attackers trick users into opening malicious documents. Consequently, sensitive information leaks out.
Apple fixed these issues quickly. Pages 15.1 and Keynote 15.1 arrived on January 28. The updates apply to macOS Sequoia 15.6 and later. Vulnerabilities carry CVE-2025-46316 and CVE-2025-46306 tags.
Moreover, Google Chrome faces a high-severity threat. CERT-In flagged it in CIVN-2026-0051 on January 28. The problem hits desktop versions before specific builds.
Chrome versions lag behind 144.0.7559.109 on Linux. They fall short of 144.0.7559.109 or 144.0.7559.110 on Windows and macOS. A flaw in the Background Fetch API causes trouble.
Attackers send crafted requests. This enables remote code execution. Systems face compromise or service disruption as a result.
Google rolled out the fix promptly. The Stable Channel update landed on January 27. The vulnerability tracks as CVE-2026-1504.
CERT-In stresses immediate action. Users must install the latest patches from Apple and Google. Organizations should prioritize updates too. Delayed patching raises unauthorized access risks.
Furthermore, information disclosure becomes likely. Broader system compromise looms larger without fixes. Refer to official release notes for details.
Stay vigilant. Update now. Protect your devices effectively. Cyber threats evolve fast. Quick response keeps you safe.