Microsoft Edge
cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*
A use-after-free vulnerability has been identified in Microsoft Edge (Chromium-based), allowing an unauthorized attacker to execute code remotely. This vulnerability requires user interaction, as it involves convincing a user to open a specially crafted file or visit a malicious website.
Exploitation of this vulnerability could lead to unauthorized remote code execution on the affected system.
To reproduce this vulnerability, a user must be convinced to open a specially crafted file or visit a website designed to exploit the use-after-free condition in Microsoft Edge. Once the file is opened or the website is visited, the vulnerability can be triggered, leading to remote code execution.
Users can download the security update for this vulnerability through the Microsoft Edge Security Update page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.