Back to advisories

Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Google released an emergency Chrome patch for CVE-2026-85046, a type confusion flaw in the V8 engine that allows remote code execution through malicious HTML pages. This zero-day is actively exploited in the wild. All Chrome users are at immediate risk of compromise.

CRITICALAdvisorySep 05, 2026
Action required
Deploy Chrome update to all endpoints immediately. Prioritize users in high-risk roles and public-facing systems. Monitor for suspicious process execution and network connections originating from browser processes.
Affected products
ChromeGoogleMicrosoft EdgeBraveOpera