Google patches actively exploited Chrome zero

Google has released a security update for its Chrome browser to address a zero-day vulnerability, CVE-2026-85046, which is currently being exploited in the wild. The flaw is a type confusion bug in the V8 engine that could allow remote attackers to execute arbitrary code.
Why it matters
Active exploitation of browser vulnerabilities poses a significant security risk to millions of users, necessitating immediate software updates.
Google patches actively exploited Chrome zero-day (CVE-2026-85046) Google has patched 12 vulnerabilities affecting its popular Chrome browser, among them CVE-2026-85046, which has been exploited in the wild.
“Google is aware that an exploit for CVE-2026-85046 exists in the wild,” the company said in a Thursday security advisory.
The fix has been shipped in Chrome 152.0.7977.82/.83 for Windows and macOS and Chrome 152.0.7977.82 for Linux, with the update rolling out to users over the coming days and weeks.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in