CVE-2026-58295: Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.
Other sources
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 150.0.4078.48
Event History
Frequently Asked Questions
What is the severity of CVE-2026-58295?
The severity of CVE-2026-58295 is rated as high with a score of 8.3.
How does CVE-2026-58295 affect users of Microsoft Edge (Chromium-based)?
CVE-2026-58295 allows unauthorized attackers to bypass security features in Microsoft Edge, potentially leading to unauthorized access.
What are the potential impacts of CVE-2026-58295 if exploited?
If exploited, CVE-2026-58295 can result in unauthorized resource access, which may compromise user data and system integrity.
How can I fix CVE-2026-58295?
To fix CVE-2026-58295, users should update Microsoft Edge to the latest version as provided by Microsoft.
Is there a workaround for CVE-2026-58295?
Currently, there are no recommended workarounds for CVE-2026-58295 other than applying the available updates.