logo

Chrome's zero-day Whac-A-Mole continues with fifth exploited bug of the year

ID: 6a15b834-da6c-5f22-9b36-ea6427ffd0a8

STIX ID: report--6a15b834-da6c-5f22-9b36-ea6427ffd0a8

Feed Name: The Register (Security)

Threat Score
78/100

Date Published: 2026-06-09

Date Updated: 2026-06-09

...
...

Google fixed an actively exploited Chrome zero-day (CVE-2026-11645), an out-of-bounds memory access vulnerability in the V8 JavaScript engine, and awarded the reporter a $55,000 bounty. The company confirmed in-the-wild exploitation but withheld technical details while users update; this is the fifth Chrome zero-day patched in 2026 and there is no indication of broad indiscriminate attacks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.