Skip to content

Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

  • by

​Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild.

The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome’s JavaScript and WebAssembly engine.

“Out-of-bounds write in V8 in Google Chrome prior to Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild.

The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome’s JavaScript and WebAssembly engine.

“Out-of-bounds write in V8 in Google Chrome prior to  The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *