CVE-2024-29981

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Apr 4, 2024
Updated: Jan 6, 2025
CWE ID 1021

Summary

CVE-2024-29981 is a new spoofing vulnerability affecting Microsoft Edge browsers based on Chromium. An attacker can manipulate the rendered content of a webpage to mislead users into believing they are on a trustworthy site, potentially leading to the disclosure of sensitive information. This issue poses a significant risk for phishing attacks and could compromise user security. Microsoft is strongly urged to release a patch as soon as possible to mitigate this vulnerability. Users can protect themselves by enabling multi-factor authentication, keeping their browsers updated, and being cautious when interacting with unfamiliar websites.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Edge Chromium

Affected Vendors

  • Microsoft