Microsoft Edge for Android Security Feature Bypass Vulnerability

Vulnerability

A vulnerability allowing unauthorized access control bypass has been identified in Microsoft Edge for Android, specifically in version 150.0.4078.48. This flaw enables an attacker to circumvent a security feature over the network, potentially leading to unauthorized access or actions.

Impact

Exploitation of this vulnerability allows for a security feature bypass, enabling unauthorized users to bypass expected access controls.

Reproduction

To reproduce this vulnerability, an unauthorized attacker must control a webpage that the user visits. The user must then perform two tap gestures to activate the autofill feature, thereby exploiting the access control bypass.

Remediation

Users can download the security update for Microsoft Edge (Chromium-based) version 150.0.4078.48. For more details, refer to the Microsoft Edge Release Notes.

Added: Jul 3, 2026, 10:20 PM
Updated: Jul 3, 2026, 10:20 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
3.1
exploitability
4.6
remediation
7.7
relevance
8.8
threat
1.6
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.