Chrome Patch Fends Off Actively Exploited V8 Zero-Day

TL;DR Summary
Google released a Chrome security update that patches 12 vulnerabilities, including an actively exploited V8 zero-day (CVE-2026-85046) that enables remote code execution via a crafted HTML page. An exploit already exists in the wild, and Google urges users to update to Chrome 152.0.7977.82/83 on Windows and macOS, and 152.0.7977.82 on Linux; the update also fixes five other CVEs (CVE-2026-2441, -3909, -3910, -5281, -11645), bringing the total of actively exploited Chrome zero-days addressed this year to six.
- Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day The Hacker News
- Two critical Chrome flaws put users at risk on malicious websites Malwarebytes
- Critical Chrome 0-Day Vulnerability Actively Exploited in the Wild CyberSecurityNews
- Tech Matters: All about browser security updates Standard-Examiner
- Google Chrome Multiple Vulnerabilities Hong Kong Computer Emergency Response Team Coordination Centre
Reading Insights
Total Reads
1
Unique Readers
5
Time Saved
1 min
vs 2 min read
Condensed
76%
320 → 76 words
Want the full story? Read the original article
Read on The Hacker News