CVE-2022-26905

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jun 1, 2022
Updated: Jan 2, 2025

Summary

CVE-2022-26905 is a new spoofing vulnerability affecting Microsoft Edge browsers based on Chromium. An attacker can manipulate the browser's address bar to display a fraudulent website, potentially tricking users into entering sensitive information. This issue can lead to phishing attacks and data breaches, emphasizing the importance of maintaining up-to-date software and practicing cautious browsing habits. Microsoft has released a patch to address this vulnerability, and users are encouraged to install it as soon as possible to protect against potential exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Edge Chromium

Affected Vendors

  • Microsoft