Remote Code Execution Vulnerability in Microsoft Edge by Microsoft
CVE-2026-66315

7.5HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
3 August 2026

What is CVE-2026-66315?

A use after free vulnerability in Microsoft Edge (Chromium-based) can be exploited by attackers to execute arbitrary code from a remote location. This issue arises when the browser improperly manages memory in certain scenarios, allowing unauthorized actors to manipulate the execution flow, potentially leading to system compromise. Users are advised to apply security patches provided by Microsoft to mitigate this risk.

Affected Version(s)

Microsoft Edge (Chromium-based) 1.0.0.0 < 151.0.4129.59

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.