CVE-2026-66314: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Other sources
Time-of-check time-of-use (toctou) race condition in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 151.0.4129.59
Event History
Frequently Asked Questions
What is the severity of CVE-2026-66314?
CVE-2026-66314 has a medium severity rating of 6.5.
What type of vulnerability is CVE-2026-66314?
CVE-2026-66314 is an information disclosure vulnerability caused by a time-of-check time-of-use (TOCTOU) race condition.
How does CVE-2026-66314 affect users?
CVE-2026-66314 allows an unauthorized attacker to potentially disclose sensitive information over a network.
What software is affected by CVE-2026-66314?
CVE-2026-66314 affects Microsoft Edge, specifically the Chromium-based versions.
How can I protect my system from CVE-2026-66314?
To protect against CVE-2026-66314, users should ensure they are using the latest version of Microsoft Edge.