Google Rushes Out Patch as Hackers Exploit Critical Chrome Vulnerability
Google has rushed out a patch for Chrome after confirming that hackers have been actively exploiting a high-severity vulnerability in the browser's V8 JavaScript and WebAssembly engine.
The flaw, tracked as CVE-2026-85046, carries a CVSS score of 8.8 and is classified as a type-confusion bug that allows remote attackers to execute arbitrary code inside the sandbox via a crafted HTML page.
Google acknowledged the active exploitation in a security notice published Thursday, stating that 'an exploit for CVE-2026-85046 exists in the wild.'
The fix ships in Chrome 152.0.7977.82 and 152.0.7977.83 for Windows and macOS, along with version 152.0.7977.82 for Linux.