Spoofing Vulnerability in Microsoft Edge by Microsoft
CVE-2026-57978

5.4MEDIUM

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
26 July 2026

What is CVE-2026-57978?

A vulnerability in Microsoft Edge (Chromium-based) arises from an origin validation error that can be exploited by unauthorized attackers to execute spoofing attacks over a network. This issue may lead to compromised user information and affect the integrity of user communications. It is highly advised to apply the necessary updates to mitigate risks associated with this vulnerability.

Affected Version(s)

Microsoft Edge (Chromium-based) 1.0.0.0 < 150.0.4078.99

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.