Google has released a security update for its Chrome browser to address a high-severity vulnerability, identified as CVE-2026-85046, which attackers were actively exploiting. The bug impacts the V8 engine, responsible for running JavaScript and WebAssembly within Chrome. While Google has confirmed the exploit's existence in the wild, the company has not yet disclosed details about the attackers, their targets, or the specific capabilities of the exploit. The patch is being rolled out gradually in Chrome versions 152.0.7977.82 and 152.0.7977.83 for Windows and Mac, and version 152.0.7977.82 for Linux. This update includes a total of 12 security fixes, with nine classified as high-severity and two as medium-severity. The vulnerability was reported by security researcher Salvatore Gulizia, who received a $1,000 bug bounty from Google. Although Google has not linked this specific exploit to cryptocurrency theft, the company noted that browser-based crypto theft has been a target through other means, citing previous incidents involving malicious extensions and malware.