bleeping-computer · Crawled Sep 4, 2026

Google warns of new Chrome zero-day flaw exploited in attacks

3 CVEs
Read original article ↗

AI Summary

Google has patched a high-severity zero-day vulnerability in Chrome's V8 JavaScript and WebAssembly engine, identified as CVE-2026-85046, which is being actively exploited in the wild. The flaw is a type confusion issue that could allow remote code execution if a user visits a specially crafted webpage containing malicious JavaScript. Google has not disclosed specific exploitation details to allow time for users to update. Chrome users are urged to update to version 152.0.7977.82 or later to mitigate the risk. This is the sixth actively exploited Chrome zero-day fixed by Google in 2026.

AI-extracted · verify before operational use

Extracted Entities 3 found