Update Your Browser: Google Patches Chrome Flaw Hackers Were Already Using
Summary
Google patched a high-severity Chrome vulnerability in V8, the JavaScript and WebAssembly engine, after confirming an exploit was already being used in the wild. The flaw, tracked as CVE-2026-85046, is a type-confusion bug that can cause memory errors and unpredictable behavior. Google has not said who is exploiting it, who is affected, or whether it enables remote code execution. The fix is included in Chrome 152.0.7977.82 and .83 on Windows and Mac, and 152.0.7977.82 on Linux, with rollout expected over days or weeks. Security researcher Salvatore Gulizia reported the issue on Aug. 4 and received a $1,000 bounty. Google says it is withholding some technical details until most users and third-party projects have updated.
