AllCyberNews

CVE-2026-87491

Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)

CVSS 8.8 high · Google Chrome · published 2026-09-09

Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

Coverage 2 sources

  1. 2026-09-09 Help Net Security medium Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)

    Google patches actively exploited Chrome zero-day CVE-2026-87491.

  2. 2026-09-09 CISA Cybersecurity Advisories high CISA Adds Four Known Exploited Vulnerabilities to Catalog

    CISA added four new vulnerabilities to its Known Exploited Vulnerabilities Catalog.

Mentioned with

CVE-2025-25249 CVE-2026-19490 CVE-2026-20079

Also covered