Google has released an emergency update to fix a fifth zero-day vulnerability in Chrome for 2026, identified as CVE-2026-11645, which was actively exploited by attackers. The high-severity flaw, stemming from an out-of-bounds read and write issue in the Chrome V8 JavaScript engine, allows remote attackers to execute arbitrary code and access sensitive information.
Google has patched its fifth Chrome zero-day vulnerability of the year, CVE-2026-11645, which was being actively exploited. This vulnerability stems from an out-of-bounds read and write issue in the Chrome V8 JavaScript engine, allowing attackers to execute arbitrary code. As a professional in cybersecurity, it's crucial to ensure your organization promptly updates Chrome across all systems to mitigate this security risk and prevent potential data breaches or unauthorized access.