securityaffairs.com 9/4/2026, 9:51:48 AM · external

Google fixes the sixth actively exploited Chrome zero-day of 2026

Google fixes the sixth actively exploited Chrome zero-day of 2026
CyberSIXT Evidence Panel
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

GOOGLE has released a security update for Chrome, fixing 12 vulnerabilities, including the sixth actively exploited zero-day of 2026, designated CVE-2026-85046. This flaw, rated 8.8 on the CVSS scale, impacts the V8 engine and allows remote code execution via a crafted webpage. Security researcher Salvatore Gulizia, aka Serotav, reported the issue on August 4, 2026, earning a $1,000 bug bounty.

Since 2026 began, Google has addressed multiple zero-day exploits in Chrome, underscoring the browser's ongoing security challenges. The update upgrades Chrome to version 152.0.7977.82/.83 for Windows and Mac, and 152.0.7977.82 for Linux.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline