What is CVE-2026-11645?
An out-of-bounds read and write vulnerability in Google Chromium's V8 engine allows remote attackers to execute arbitrary code within the sandbox via a crafted HTML page. This issue potentially affects multiple Chromium-based browsers, including Google Chrome and Microsoft Edge. Users should immediately update their browsers to the latest patched version.
Azərbaycanca: Google Chromium-un V8 mühərrikində aşkarlanan bu boşluq, xüsusi hazırlanmış HTML səhifəsi vasitəsilə uzaqdan kod icrasına imkan verir. Xüsusilə Google Chrome, Microsoft Edge də daxil olmaqla Chromium əsaslı bir çox brauzerə təsir edə bilər. İstifadəçilərə brauzerlərini dərhal ən son versiyaya yeniləmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-125; shared vendor: Google
FAQ2
Which software component is affected by CVE-2026-11645?
This vulnerability was discovered in Google Chromium's V8 engine.
How can an attacker exploit the CVE-2026-11645 vulnerability?
An attacker can exploit it via a crafted HTML page.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.