
Chrome Zero-Day Exploited in the Wild Gets Quick Patch (CVE-2026-87491)
Google issued patches for a new actively exploited Chrome zero-day in the V8 engine (CVE-2026-87491), rolling updates to Windows, macOS, and Linux; exploitation could allow remote code execution via crafted HTML and heap corruption, with Google restricting full exploit details until most users are updated. This marks the seventh Chrome zero-day addressed in 2026, following several earlier flaws.