Information Disclosure Vulnerability in Microsoft Edge for Android
CVE-2026-66310

7.7HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
3 August 2026

What is CVE-2026-66310?

An information disclosure vulnerability exists in Microsoft Edge for Android, which could allow an unauthorized attacker to manipulate file name paths. This exposure may lead to unauthorized access to sensitive local information, compromising the application's integrity. Users are advised to implement security patches provided by Microsoft to mitigate this risk.

Affected Version(s)

Microsoft Edge for Android 1.0.0 < 151.0.4129.59

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.