CVE-2026-45492: Microsoft Edge Chromium

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.

Affected products

  • Microsoft Edge Chromium: before 148.0.3967.70 (fixed in 148.0.3967.70)

Published 2026-05-18. Last modified 2026-06-17.