← Back

Wire · regulatory

Google fixes yet another actively exploited Chrome zero-day (CVE-2026-87491)

Published

9 September 2026

Topic

regulatory

Sectors

Cybersecurity

Geography

United States

Source

Read at helpnetsecurity.com

Verified

Fusion42 · 9 September 2026 · Fusion42 review

Google patched a medium-severity zero-day vulnerability CVE-2026-87491 in Chrome's V8 engine that allowed remote code execution, marking the seventh actively exploited Chrome zero-day fixed in 2026.

This Wire brief sits within Fusion42's coverage of Cybersecurity, and 5 sources have reported it between 4 Sep 2026 and 9 Sep 2026.

◆ The Wire takeaway

You must prioritise patching Chrome immediately to prevent attackers exploiting this zero-day to execute code remotely. Delay increases risk of compromise from a vulnerability actively used in the wild.

Coverage

5 sources · first reported 4 Sep 2026 · latest 9 Sep 2026

Related on Wire

Topics

Cybersecuritychromezero-dayvulnerabilitysecurity-patchexploit