CVE-2026-66325: Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Other sources
Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 151.0.4129.59
Event History
Frequently Asked Questions
What is the severity of CVE-2026-66325?
The severity of CVE-2026-66325 is rated as medium, with a score of 6.1.
What type of vulnerability is CVE-2026-66325?
CVE-2026-66325 is categorized as a spoofing vulnerability, specifically related to server-side request forgery (SSRF) in Microsoft Edge.
What software is affected by CVE-2026-66325?
CVE-2026-66325 affects Microsoft Edge, specifically the Chromium-based version.
How can organizations mitigate the risk of CVE-2026-66325?
Organizations can mitigate the risk of CVE-2026-66325 by ensuring they are using the latest version of Microsoft Edge and applying any available security patches.
What is the potential impact of CVE-2026-66325?
The potential impact of CVE-2026-66325 allows unauthorized attackers to perform spoofing over a network, which may compromise user information and affect system integrity.