Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
https://www.securityweek.com/chrome-153-patches-seventh-zero-day-of-2026/
https://www.helpnetsecurity.com/2026/09/09/google-chrome-cve-2026-87491-zero-day-flaw/
https://thehackernews.com/2026/09/chrome-v8-zero-day-exploited-in-wild.html
https://www.securityweek.com/google-patches-6th-chrome-zero-day-of-2026/
https://www.helpnetsecurity.com/2026/09/04/google-chrome-zero-day-cve-2026-85046/
https://thehackernews.com/2026/09/google-releases-chrome-update-to-patch.html
https://www.securityweek.com/no-patch-planned-for-exploited-arista-eos-vulnerability/
https://thehackernews.com/2026/06/cisa-adds-cisco-chrome-and-arista-flaws.html
https://www.securityweek.com/google-patches-5th-chrome-zero-day-exploited-in-2026/
https://www.infosecurity-magazine.com/news/google-patch-chrome-vulnerability/
https://www.helpnetsecurity.com/2026/06/09/google-chrome-zero-day-cve-2026-11645/
https://thehackernews.com/2026/06/chrome-v8-zero-day-cve-2026-11645.html
https://chromereleases.googleblog.com/2026/06/stable-channel-update-for-desktop_0153744567.html
https://github.com/VixianSchool/nuclei-cve-check
https://github.com/lutfizp/cveRnD
https://github.com/rozetyp/vuln-intel-mcp
https://github.com/0xBlackash/CVE-2026-11645
https://github.com/adamshaikhma/CVE-2026-11645
https://github.com/fevar54/CVE-2026-11645-Out-of-bounds-Read-Write
https://github.com/zeuu5/cyber-threat-hub
https://github.com/pierce403/cvehunt
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-11645
Published: 2026-06-09
Updated: 2026-07-23
Named Vulnerability: GHSA-x2hh-w9mw-3vq2Known Exploited Vulnerability (KEV)
Base Score: 10
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
Severity: Critical
Base Score: 8.8
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity: High
EPSS: 0.0008