CVE-2023-23374

CVSS 3.1 Score 8.3 of 10 (high)

Details

Published Feb 14, 2023
Updated: Jan 1, 2025

Summary

CVE-2023-23374 is a newly disclosed remote code execution vulnerability affecting Microsoft Edge, which is based on Chromium. Hackers can exploit this flaw to execute malicious code on victims' devices by tricking them into opening a specially crafted website. Successful exploitation could lead to the installation of unauthorized software, data theft, or other malicious activities. Users are advised to keep their browsers up-to-date to protect against potential attacks. Microsoft has released a patch to address this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Edge Chromium

Affected Vendors

  • Microsoft