Type Confusion Vulnerability in Microsoft Edge by Microsoft
CVE-2026-70339

5.4MEDIUM

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
11 August 2026

What is CVE-2026-70339?

A type confusion vulnerability exists in Microsoft Edge (Chromium-based) that could allow an attacker to execute arbitrary code. This issue arises when a resource is accessed using an incompatible type, leading to potential exploitation via network communications. Attackers can take advantage of this flaw to execute unsolicited commands and compromise system integrity. Users are urged to apply the latest security updates to mitigate this risk.

Affected Version(s)

Microsoft Edge (Chromium-based) 1.0.0.0 < 151.0.4129.78

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.