Four different threat groups have been observed actively exploiting a shared vulnerability affecting both Chrome and Windows systems. Security experts say the situation highlights ongoing gaps in patch deployment across organisations.

Researchers attribute the widespread exploitation to two key factors: delays in applying available patches, and the increasingly rapid discovery of new vulnerabilities powered by AI-based tools. As automated vulnerability discovery accelerates, the window between disclosure and exploitation continues to narrow, making timely patching more critical than ever.