Microsoft Edge
cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*
A type confusion vulnerability has been identified in Microsoft Edge (Chromium-based) version 150.0.4078.48. This vulnerability allows an unauthorized attacker to bypass a security feature over the network. The issue arises from the access of resources using incompatible types, which can be exploited to manipulate how the browser handles certain data, potentially leading to unauthorized access or actions.
Exploitation of this vulnerability could bypass user access controls, allowing unauthorized actions or access to resources that should be restricted.
Users can download the security update for Microsoft Edge (Chromium-based) version 150.0.4078.48 through the Microsoft Edge Update mechanism. For enterprise environments, the update is available via the Microsoft Edge Enterprise Update channel.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.