CVE-2026-42891: Microsoft Edge Chromium
Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.
User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
Affected products
- Microsoft Edge Chromium: before 148.0.3967.55 (fixed in 148.0.3967.55)
Published 2026-05-12. Last modified 2026-06-17.