Google has released a new version of its Chrome browser for Windows, Mac, and Linux, fixing a dozen security vulnerabilities. Among them is a high-severity flaw that is already being actively exploited in the wild. The update, identified as Chrome 152.0.7977.82/.83, has been available since September, and it is strongly recommended to install it as soon as possible.
The most critical flaw, tracked as CVE-2026-85046, is a type confusion issue in the V8 JavaScript engine. This vulnerability allows a remote attacker to execute arbitrary code within the browser's sandbox via a specially crafted HTML page. The discoverer, security researcher Salvatore Gulizia, was awarded a $1,000 bounty for his report.
Details on vulnerability CVE-2026-85046
According to the National Vulnerability Database, the flaw is described as a type confusion in V8 in Google Chrome that enables arbitrary code execution. This defect could allow a malicious actor to compromise system security. As is customary, Google has decided not to disclose full technical details until most users have installed the patch, to prevent further attacks.
Sponsored Protocol
This is the sixth zero-day fixed by Google in Chrome since the start of the year, indicating that pressure on browsers is steadily increasing. The vulnerability also affects other Chromium-based browsers, such as Edge, Brave, Opera, and Vivaldi. Therefore, it is crucial to update not only Chrome but also these other browsers to ensure maximum protection.
Sponsored Protocol
To check if the update has already been installed, users can open the three-dot menu in the top right corner, select Help, and then About Google Chrome. The current version number will be displayed. Typically, the update occurs automatically, but it is always good to verify manually.
The importance of applying the patch immediately is underscored by the fact that the flaw has already been exploited in real attacks. Although details have not been made public, the security community strongly advises updating the browser to avoid unnecessary risks.
For those interested in a deep technical analysis, researcher Salvatore Gulizia has published a detailed explanation on his blog. Additionally, the full list of fixed vulnerabilities is available in Google's official security bulletin.
Sponsored Protocol
In today's context, where cyber threats are increasingly sophisticated, staying updated is essential. Not only for Chrome, but also for all software we use daily. Timely installation of updates can make the difference between a secure system and a compromised one.
For more insights on tech news, check out our article on Best Buy's Labor Day 2026 sale, which discusses offers on devices that might require these very security updates.