CVE-2026-66311: Microsoft Edge (Chromium-based) Tampering Vulnerability
Microsoft Edge (Chromium-based) Tampering Vulnerability
Other sources
Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 151.0.4129.59
Event History
Frequently Asked Questions
What is the severity of CVE-2026-66311?
The severity of CVE-2026-66311 is rated as medium with a score of 6.2.
What type of vulnerability is CVE-2026-66311?
CVE-2026-66311 is a tampering vulnerability in Microsoft Edge (Chromium-based).
How does CVE-2026-66311 affect users?
CVE-2026-66311 allows an unauthorized attacker to perform tampering locally on the affected system.
How do I fix CVE-2026-66311?
To fix CVE-2026-66311, ensure that you are using the latest version of Microsoft Edge (Chromium-based).
Is CVE-2026-66311 exploitable remotely?
CVE-2026-66311 is not exploitable remotely as it requires local access for tampering.