itszn
We found another exploitable V8 JIT bug CVE-2026-14431; fixed in the most recent Chrome update This one was an interesting case of sloppy mode breaking JIT assumptions In addition the same session was able to find a working v8 heap sandbox bypass (although it ended up as a dup)