Google today released version 88.0.4324.150 of its Chrome browser for Windows, Mac and Linux. THE current release contains only one fix for a zero-day vulnerability already in use.
The zero-day, assigned the identifier CVE-2021-21148, is described as a “heap Overflow” in the V8 JavaScript engine.
Google reports that the error is already being used in attacks and that security investigator Mattias Buelens reported the issue on January 24.
Two days after the Buelens report, Google's security team released a report on attacks by North Korean hackers against a cyber security community.
Some of these attacks attempted to lure security researchers to a blog where attackers were exploiting a browser zero-day to run malware in researchers' systems.
As you can see, it is recommended that you immediately upgrade to Google Browser.