CVE-2025-21401

CVSS 3.1 Score 4.5 of 10 (medium)

Details

Published Feb 15, 2025
Updated: Feb 18, 2025
CWE ID 601

Summary

CVE-2025-21401 represents a security feature bypass vulnerability affecting Microsoft Edge, the Chromium-based web browser. Malicious actors can exploit this issue to bypass security measures, potentially leading to the execution of malicious code on users' devices. The precise nature of the bypass is not yet publicly disclosed, but it is recommended that users keep their browser up-to-date with the latest security patches to mitigate risk. Microsoft is actively working on a fix for this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share