Chrome Users Urged to Update Amid Sixth Zero-Day Exploit Patch
Google has released a new update for its Chrome browser that patches a high-severity type confusion vulnerability in the V8 JavaScript and WebAssembly engine, known as CVE-2026-85046. This is the sixth zero-day exploit patched by Google this year, and it affects Chrome versions prior to 152.0.7977.82.
The vulnerability was reported to Google by security researcher Salvatore Gulizia on August 4 and was awarded a $1,000 bounty. Type confusion occurs when software treats a piece of data as the wrong type, potentially corrupting memory and creating conditions that attackers can exploit.
Google has not disclosed who is exploiting the vulnerability or how many users have been targeted. However, the company recommends that all Chrome users update to the latest version to protect themselves from potential attacks.