CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5676

As cited

Copy frozen at (site build).

vulnerabilities

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Google released Chrome version 152.0.7977.82 on September 4, 2026, patching 12 vulnerabilities including CVE-2026-85046, a type confusion bug in the V8 JavaScript engine with a CVSS score of 8.8. The flaw allows remote code execution and had been exploited in active attacks before the patch became available.

Why it matters: Chrome users on all platforms must update immediately to close a high-severity type confusion vulnerability in V8 that could enable remote code execution through malicious web content.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Google released Chrome version 152.0.7977.82 on September 4, 2026, patching 12 vulnerabilities including CVE-2026-85046, a type confusion bug in the V8 JavaScript engine with a CVSS score of 8.8. The flaw allows remote code execution and had been exploited in active attacks before the patch became available.

Why it matters: Chrome users on all platforms must update immediately to close a high-severity type confusion vulnerability in V8 that could enable remote code execution through malicious web content.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Google released Chrome version 152.0.7977.82 on September 4, 2026, to address 12 vulnerabilities, including a type confusion flaw in the V8 JavaScript engine that is actively exploited in the wild. CVE-2026-85046 carries a CVSS score of 8.8 and enables remote code execution against unpatched browsers.

Why it matters: All Chrome users face immediate remote code execution risk from in-the-wild attacks and must update to version 152.0.7977.82 or later without delay.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Google released Chrome version 152.0.7977.82 on September 4, 2026, to address 12 vulnerabilities, including a type confusion flaw in the V8 JavaScript engine that is actively exploited in the wild. CVE-2026-85046 carries a CVSS score of 8.8 and enables remote code execution against unpatched browsers.

Why it matters: All Chrome users face immediate remote code execution risk from in-the-wild attacks and must update to version 152.0.7977.82 or later without delay.

VendorsGoogle
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary