CVE-2026-57978: Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Other sources
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 150.0.4078.99
Event History
Frequently Asked Questions
What is the severity of CVE-2026-57978?
The severity of CVE-2026-57978 is medium with a base score of 5.4.
What type of vulnerability is CVE-2026-57978?
CVE-2026-57978 is a spoofing vulnerability that affects Microsoft Edge (Chromium-based).
Who can be affected by CVE-2026-57978?
Any user of Microsoft Edge (Chromium-based) may be affected if an attacker successfully exploits the vulnerability.
How can an attacker exploit CVE-2026-57978?
An unauthorized attacker can exploit CVE-2026-57978 over a network by performing spoofing attacks.
How do I fix CVE-2026-57978?
To fix CVE-2026-57978, ensure that Microsoft Edge (Chromium-based) is updated to the latest version provided by Microsoft.