Published September 9, 2026
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. Google is aware that an exploit for CVE-2026-85046 exists in the wild.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 9, 2026
Updated an acknowledgement. This is an informational change only.
Published September 8, 2026
Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.