CVE-2022-26905
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2022-26905 is a new spoofing vulnerability affecting Microsoft Edge browsers based on Chromium. An attacker can manipulate the browser's address bar to display a fraudulent website, potentially tricking users into entering sensitive information. This issue can lead to phishing attacks and data breaches, emphasizing the importance of maintaining up-to-date software and practicing cautious browsing habits. Microsoft has released a patch to address this vulnerability, and users are encouraged to install it as soon as possible to protect against potential exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Edge Chromium
Affected Vendors
- Microsoft