Type Confusion Vulnerability in Microsoft Edge (Chromium-based)
CVE-2025-25000
8.8HIGH
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 4 April 2025
Summary
A vulnerability exists in Microsoft Edge (Chromium-based) due to improper handling of types, allowing an unauthorized attacker to exploit this flaw. By executing arbitrary code over a network, the attacker can potentially take control of the affected system. This issue arises from the lack of proper type checks and may lead to severe security implications for users of the browser.
Affected Version(s)
Microsoft Edge (Chromium-based) Unknown 1.0.0.0 < 135.0.3179.73
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published