CVE-2025-29795: Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability
Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.
Other sources
Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 1.3.195.45
Event History
Frequently Asked Questions
What is the severity of CVE-2025-29795?
CVE-2025-29795 is classified as an elevation of privilege vulnerability in Microsoft Edge.
How do I fix CVE-2025-29795?
To address CVE-2025-29795, update Microsoft Edge to the latest version provided by Microsoft.
Who is affected by CVE-2025-29795?
CVE-2025-29795 affects users of Microsoft Edge (Chromium-based) who have not applied the latest security updates.
What types of attacks can exploit CVE-2025-29795?
CVE-2025-29795 can be exploited by authorized attackers to elevate their privileges locally on affected systems.
Is CVE-2025-29795 a remote or local vulnerability?
CVE-2025-29795 is a local elevation of privilege vulnerability that requires local access to exploit.