Google Patches Two Critical Chrome Vulnerabilities Targeted by Attackers

Google has issued updates for Chrome to resolve two serious vulnerabilities that have been actively exploited.

3 min readCybersecurity

On Thursday, Google announced important security updates for its Chrome browser, addressing two critical vulnerabilities that have reportedly been exploited in real-world attacks. The first vulnerability, identified as CVE-2026-3909, has a CVSS score of 8.8 and is categorized as an out-of-bounds write issue within the Skia 2D graphics library. This flaw could enable remote attackers to access memory outside of the intended boundaries by using specially crafted HTML content. The second vulnerability, CVE-2026-3910, is linked to the V8 JavaScript engine, which also poses significant security risks. Users are strongly encouraged to update their browsers promptly to mitigate potential threats. These updates are part of Google's ongoing commitment to enhance the security of its products and protect users from emerging cyber threats.

Cybersecurity