Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

Google Fixes Sixth Actively Exploited Chrome Zero-Day of 2026: A Growing Concern for Browser Security


Google has fixed the sixth actively exploited Chrome zero-day of 2026, a significant development in the ongoing battle against cyber threats. The latest zero-day vulnerability, identified as CVE-2026-85046, has been found to be exploitable by remote attackers, allowing them to execute arbitrary code inside the browser sandbox through a specially crafted HTML page. Stay up-to-date with the latest security news and ensure your browser is protected with the latest updates.

  • Google has fixed the sixth actively exploited Chrome zero-day of 2026, CVE-2026-85046.
  • A remote attacker can execute arbitrary code inside the browser sandbox using a specially crafted HTML page.
  • The bug was discovered by security researcher Salvatore Gulizia on August 4, 2026.
  • The Chrome security update fixing 12 vulnerabilities, including the actively exploited V8 type confusion flaw, was released promptly by Google.
  • The CVE-2026-85046 vulnerability has a CVSS score of 8.8, indicating a high severity of impact.
  • Users should update their Chrome browser to the latest version (152.0.7977.82/.83 for Windows and Mac, and 152.0.7977.82 for Linux) and remain cautious when browsing the internet.
  • The discovery of this vulnerability highlights the importance of collaboration between security researchers, vendors, and users.



  • Google has recently fixed the sixth actively exploited Chrome zero-day of 2026, a significant development in the ongoing battle against cyber threats. This latest zero-day vulnerability, identified as CVE-2026-85046, has been found to be exploitable by remote attackers, allowing them to execute arbitrary code inside the browser sandbox through a specially crafted HTML page.

    The bug, which affects Chrome's JavaScript and WebAssembly engine, was discovered by security researcher Salvatore Gulizia, also known as Serotav, on August 4, 2026. Gulizia reported the flaw to Google, and after receiving a $1,000 bug bounty, the company promptly addressed the issue by releasing a Chrome security update fixing 12 vulnerabilities, including the actively exploited V8 type confusion flaw.

    The CVE-2026-85046 vulnerability is part of a growing list of Chrome zero-days that have been exploited in the wild since the start of 2026. The five previously identified vulnerabilities, CVE-2026-2441, CVE-2026-3909, CVE-2026-3910, CVE-2026-5281, and CVE-2026-11645, have been found to have a CVSS score of 8.8, indicating a high severity of impact.

    The sixth actively exploited Chrome zero-day highlights the ongoing threat landscape and the need for users to stay vigilant when using the internet. As the number of zero-days continues to grow, it is essential for users to keep their software up to date and to exercise caution when clicking on links or opening attachments from unknown sources.

    Google's proactive approach to addressing these vulnerabilities is a welcome development in the fight against cyber threats. The company's commitment to prioritizing browser security is evident in its efforts to identify and fix these zero-days, providing users with a safer browsing experience.

    In light of this new development, it is crucial for users to take immediate action to protect themselves. They can do this by ensuring that their Chrome browser is updated to the latest version, which currently stands at 152.0.7977.82/.83 for Windows and Mac, and 152.0.7977.82 for Linux. Users should also remain cautious when browsing the internet, avoiding suspicious links and attachments, and regularly scanning for malware.

    Furthermore, the emergence of this zero-day vulnerability serves as a reminder of the importance of collaboration between security researchers, vendors, and users. The discovery of this vulnerability by Serotav and the subsequent patching by Google demonstrate the value of a proactive approach to browser security.

    As the threat landscape continues to evolve, it is essential for users to stay informed and take proactive steps to protect themselves. By doing so, we can all contribute to a safer and more secure online environment.



    Related Information:
  • https://www.ethicalhackingnews.com/articles/Google-Fixes-Sixth-Actively-Exploited-Chrome-Zero-Day-of-2026-A-Growing-Concern-for-Browser-Security-ehn.shtml

  • https://securityaffairs.com/198405/security/google-fixes-the-sixth-actively-exploited-chrome-zero-day-of-2026.html

  • https://nvd.nist.gov/vuln/detail/CVE-2026-85046

  • https://www.cvedetails.com/cve/CVE-2026-85046/

  • https://nvd.nist.gov/vuln/detail/CVE-2026-2441

  • https://www.cvedetails.com/cve/CVE-2026-2441/

  • https://nvd.nist.gov/vuln/detail/CVE-2026-3909

  • https://www.cvedetails.com/cve/CVE-2026-3909/

  • https://nvd.nist.gov/vuln/detail/CVE-2026-3910

  • https://www.cvedetails.com/cve/CVE-2026-3910/

  • https://nvd.nist.gov/vuln/detail/CVE-2026-5281

  • https://www.cvedetails.com/cve/CVE-2026-5281/

  • https://nvd.nist.gov/vuln/detail/CVE-2026-11645

  • https://www.cvedetails.com/cve/CVE-2026-11645/


  • Published: Fri Sep 4 06:04:42 2026 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us