CVE-2026-45495: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Published May 15, 2026
·Updated
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Affected Software
4 affected componentsFixes available
Microsoft Edge (Chromium-based)
Microsoft Edge Chromium<148.0.3967.70
Microsoft Edge<148.0.3967.70
Microsoft Edge (Chromium-based)<148.0.3967.70
148.0.3967.70
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 148.0.3967.70
Event History
May 15, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
DescriptionAffected Software
May 18, 2026
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
DescriptionSeverity
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-45495?
CVE-2026-45495 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2026-45495?
To mitigate CVE-2026-45495, update Microsoft Edge to the latest version beyond 148.0.3967.70.
3
What systems are affected by CVE-2026-45495?
CVE-2026-45495 affects Microsoft Edge (Chromium-based) versions up to 148.0.3967.70.
4
What type of vulnerability is CVE-2026-45495?
CVE-2026-45495 is a remote code execution vulnerability in Microsoft Edge.
5
Can CVE-2026-45495 be exploited through the web?
Yes, CVE-2026-45495 can potentially be exploited by tricking users into visiting a malicious website.