Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
thehackernews.com Sep 4, 2026

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

AI-summarised brief · reviewed before publication

Google released a Chrome update on Thursday that patches 12 vulnerabilities, including the high‑severity CVE‑2026‑85046, a type‑confusion flaw in the V8 engine that allows remote code execution via crafted HTML. The bug, discovered by researcher Salvatore Gulizia on August 4, was actively exploited in the wild. Google’s fix targets Chrome versions 152.0.7977.82/83 for Windows and macOS, and 152.0.7977.82 for Linux, and urges users of other Chromium‑based browsers to apply the update. The patch is part of six zero‑day fixes issued this year.

💡 Why It Matters

  • · The update closes a critical flaw that could let attackers run arbitrary code inside Chrome’s sandbox, a core component of web security.
  • · By addressing this and other zero‑days, Google reduces the attack surface for millions of users worldwide.