Feed›Vulnerability›Multiple Vulnerabilities in Google Chrome Could Allow for Ar...
VulnerabilityCIS Advisories
9.1 — CRITICAL

Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution

📅 5 September 2026 at 05:15 UTC📰 CIS AdvisoriesView original source ↗

Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

Multiple vulnerabilities in Google Chrome allow for arbitrary code execution, potentially leading to unauthorized access and data manipulation. The most severe vulnerability could execute arbitrary code with full user rights.

⚙️Technical Details
CVEs
CVE-2026-85046CVE-2026-85052CVE-2026-85043CVE-2026-85048CVE-2026-85045
Affected Systems
WindowsMacLinux
Attack Vectors
NETWORK
💥Impact Assessment
Severity: Unknown
🛡️Recommended Actions
1Apply appropriate updates provided by Google to vulnerable systems immediately after testing.
2Restrict administrator privileges to dedicated administrator accounts on enterprise assets.
3Enable anti-exploitation features on enterprise assets and software, such as Microsoft Data Execution Prevention (DEP)
📦Affected Products
Google Chrome
🔐NVD Verified DataVERIFIED
CVE-2026-85046 ↗CVSS 8.8 — HIGH
Attack Vector
NETWORK
Complexity
LOW
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-843
Affected Products (CPE)
Google Chrome
CVE-2026-85052 ↗CVSS 3.1 — LOW
Attack Vector
NETWORK
Complexity
HIGH
Vector String
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Weaknesses
CWE-125
CVE-2026-85043 ↗CVSS 9.1 — CRITICAL
Attack Vector
NETWORK
Complexity
LOW
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Weaknesses
CWE-459
CVE-2026-85048 ↗CVSS 8.3 — HIGH
Attack Vector
NETWORK
Complexity
HIGH
Vector String
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Weaknesses
CWE-416
CVE-2026-85045 ↗CVSS 7.5 — HIGH
Attack Vector
NETWORK
Complexity
HIGH
Vector String
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-367

Read the full article

This is a curated summary. The complete article is available at CIS Advisories.

Read on CIS Advisories ↗
← Back to feed