CVE-2026-11645: Out-of-Bounds Read/Write in V8.
bugpwn.com | vulnerability | High | Actively exploited | CVE-2026-11645 | #active-exploitation | #rce | #zero-day | #browser-security | #exploitation | #v8 | #chrome | #exploit-chain | #cve-2026-11645 | #out-of-bounds | #browser-exploitation | #turbofan
Summary
Deep dive into CVE-2026-11645, a Chrome V8 out-of-bounds read/write zero-day exploited in the wild and fixed in Chrome 149.0.7827.103, covering TurboFan OOB mechanics and addrof/fakeobj chains.
- CVSS
- 8.8
- Published
- Collected
Skip to content