CVE-2025-49713: Microsoft Edge Chromium

High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Affected products

  • Microsoft Edge Chromium: before 138.0.3351.65 (fixed in 138.0.3351.65)

Published 2025-07-02. Last modified 2026-06-17.