Chrome Fixes Zero-Day Flaw Exploited in Attacks
Google has released an update for its Chrome browser to fix a high-severity zero-day flaw in the V8 engine. The flaw, identified as CVE-2026-85046, is described as a type confusion vulnerability that allows attackers to corrupt memory.
The issue was reported by researcher Salvatore Gulizia and has been actively exploited in attacks. Google did not disclose any technical details about the flaw to give users time to apply the fix.
The update also addresses nine other high-severity vulnerabilities, including use-after-free and out-of-bounds memory flaws in various parts of the browser.
Chrome users are recommended to apply the available update as soon as possible by going to Settings > About Chrome and waiting for the update to download and install. A restart is required after the update process is complete for the fixes to take effect.