CVE-2026-66321: Microsoft Edge Chromium

Critical severity, CVSS 9.6. EPSS: 1.1% chance of exploitation in the next 30 days.

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Affected products

  • Microsoft Edge Chromium: before 151.0.4129.59 (fixed in 151.0.4129.59)

Published 2026-08-04. Last modified 2026-08-06.