www.malwarebytes.com 6/9/2026, 10:57:24 AM · external

Google patches Chrome V8 flaw CVE-2026-11645 amid 74 fix update

Google patches Chrome V8 flaw CVE-2026-11645 amid 74 fix update
CyberSIXT Evidence Panel
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

GOOGLE has released updates for the Chrome browser, addressing 74 vulnerabilities, including a critical one actively exploited in the wild. The stable version has been updated to 149.0.7827.102/.103 for Windows/Mac and 149.0.7827.102 for Linux. Users are encouraged to manually update by navigating through Chrome settings if automatic updates are not sufficient.

The main vulnerability, tracked as CVE-2026-11645, relates to an out-of-bounds read/write issue in Chrome's V8 engine, which could allow attackers to execute arbitrary code via crafted HTML. This flaw, while contained within the browser's environment, could lead to serious compromises when combined with other vulnerabilities. The new update also introduces features, such as signing PDF forms without extensions.

View Primary Source Via www.malwarebytes.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline