Chrome CVE-2026-85046 enters KEV after in-the-wild V8 exploitation
Published 10 Sep 2026 · Severity: high
Google released a Chrome desktop update for CVE-2026-85046, a high-severity type-confusion flaw in the V8 JavaScript engine, and stated that an exploit exists in the wild. CISA added the vulnerability to its Known Exploited Vulnerabilities catalog on 4 September 2026. Chrome 152.0.7977.82/.83 for Windows and macOS and 152.0.7977.82 for Linux contain the fix. CISA notes that other browsers using Chromium may also be affected; organisations should confirm each browser vendor's guidance rather than assume Chrome version numbers apply to other products.