CVE-2026-85046
- CVSS
- —
- EPSS
- —
- CISA KEV
- Added 2026-09-04, due 2026-09-18
- Exploitation
- Reported by the vendor
- Public exploits
- 6 repositories
- State
- Unknown
Coverage

Actively exploitedThe Hacker News
Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware(opens the publisher's site in a new tab)
A Chinese threat actor codenamed UTA0565 has been observed exploiting the recently disclosed Google Chrome-Microsoft Windows exploit chain as zero-days through fake websites. The attacks, detected on September 3 and 4, 2026, involved the chaining of two vulnerabilities in Chrome (CVE-2026-85046…
Actively exploitedCISA advisories & alerts
CISA Adds One Known Exploited Vulnerability to Catalog(opens the publisher's site in a new tab)
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-85046 Google Chromium V8 Type Confusion Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant…
What we observed
- vendor exploitedmsrc
- vendor exploitedmsrc
- vendor exploitedmsrc
- vendor exploitedmsrc
- poc publishedpoc-in-github
- vendor exploitedmsrc
- vendor exploitedmsrc
- poc publishedpoc-in-github
- vendor exploitedmsrc
- poc publishedpoc-in-github
- vendor exploitedmsrc
- poc publishedpoc-in-github
- kev addedcisa-kev