THREATOPS
THREAT OPSThreat News › Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

medthehackernewsPublished 2026-09-09

Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild.

The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome's JavaScript and WebAssembly engine.

"Out-of-bounds write in V8 in Google Chrome prior to

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://thehackernews.com/2026/09/chrome-v8-zero-day-exploited-in-wild.html