// Alert

Google Cloud threat report

Google patched CVE-2026-85046, an actively exploited zero-day type confusion vulnerability in Chrome's V8 JavaScript engine. The flaw allows remote code execution via crafted HTML pages and has been exploited in the wild. Google released Chrome 152.0.7977.82/.83 (Windows/macOS) and 152.0.7977.82 (Linux) to address this and 11 other vulnerabilities. This is the sixth Chrome zero-day Google fixed in 2026.

// Get alerts for Google Cloud