Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
7.5
CVE-2026-85045: Google Chrome (pre‑152) lets malicious web page run code
CVE-2026-85045 · published today
Summary
Versions of Google Chrome released before 152.0.7977.82 can be tricked by a specially crafted web page to execute code on the user's computer, bypassing the browser's built‑in protection. This could let attackers take control of the system or steal data. Update Chrome to version 152.0.7977.82 or newer as soon as possible to close the risk.
What to do
- Update google chrome to version 152.0.7977.82 or later.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| chrome | < 152.0.7977.82 |
Original advisory text
Race condition in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Race condition in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Severity
7.5
High
Type
CWE-367Time-of-check Time-of-use (TOCTOU) Race Condition
Timeline
Published3 Sep 2026
Updated3 Sep 2026
First seen3 Sep 2026
Monitor software like this
Free during beta