Google Fixes High-Severity Chrome Vulnerability Exploited in the Wild
Google has released security updates to patch 12 vulnerabilities in Chrome, including one actively exploited by attackers. The high-severity vulnerability, tracked as CVE-2026-85046 (CVSS score: 8.8), is a type confusion bug in V8, Chrome's JavaScript and WebAssembly engine.
A security researcher named Salvatore Gulizia discovered the flaw on August 4, 2026, and reported it to Google. He was awarded a $1,000 bug bounty for responsible disclosure.
Google acknowledged that an exploit for CVE-2026-85046 exists in the wild but did not reveal details about the attacks to prevent further exploitation. Users are advised to update their Chrome browser to versions 152.0.7977.82/.83 for Windows and Apple macOS, and 152.0.7977.82 for Linux.