Overview
Google has released a new security update that directly addresses a recent actively exploited vulnerability within Google Chromium. Successful exploitation of the high-severity vulnerability, CVE-2026-85046, could enable a remote attacker to execute arbitrary code via a crafted HTML page. This vulnerability could affect multiple web browsers that utilise the Chromium engine, such as Google Chrome, Microsoft Edge and Opera.
- CVE-2026-85046 – Type Confusion Vulnerability – CVSSv3.1 Score: 8.8
Affected Versions:
- Google Chrome for Windows / macOS: Prior to 152.0.7977.82 / .83
- Google Chrome for Linux: Prior to 152.0.7977.82
Ensure that the JavaScript V8 engine is updated.
SonicWall has released a new security advisory following two new actively exploited vulnerabilities to their SMA1000 appliances. If either of these vulnerabilities were exploited, it would lead to a remote attacker gaining unauthorised access to sensitive functionality, performing illegitimate operations or executing code remotely.
- CVE-2026-83548 – Server-Side Request Forgery – CVSSv3.1 Score: 10
- CVE-2026-83549 – OS Command Injection – CVSSv3.1 Score: 7.8
Affected Models:
- SMA-100 Models: 6210, 7210, 8200v
Affected Versions:
- 12.4.3-03453 and older versions.
- 12.5.0-02835 and older versions.
JFrog has released a security advisory for their recent critical vulnerability affecting their Artifactory platform. CVE-2026-82329 is known to be actively exploited in the wild and can enable an unauthenticated adversary with network access to obtain administrative privileges.
- CVE-2026-82329 – Improper Authentication Vulnerability – CVSSv3.1 Score: 9.8
Affected Versions:
- All versions from 7.161.0 before 7.161.19
- All versions from 7.146.0 before 7.146.36
- All versions from 7.133.0 before 7.133.28
- All versions from 7.125.0 before 7.125.19
- All versions from 7.117.0 before 7.117.27
- All versions from 7.111.4 before 7.111.21
Recommended Action
Organisations are encouraged to review the appropriate security advisory pages and apply the updates:
Google Chrome: Google Chrome Security Release
SonicWall: SonicWall Security Advisory
JFrog: JFrog Security Advisories