CVE-2025-21401
CVSS 3.1 Score 4.5 of 10 (medium)
Details
Published Feb 15, 2025
Updated: Feb 18, 2025
CWE ID 601
Summary
CVE-2025-21401 represents a security feature bypass vulnerability affecting Microsoft Edge, the Chromium-based web browser. Malicious actors can exploit this issue to bypass security measures, potentially leading to the execution of malicious code on users' devices. The precise nature of the bypass is not yet publicly disclosed, but it is recommended that users keep their browser up-to-date with the latest security patches to mitigate risk. Microsoft is actively working on a fix for this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Edge
Affected Vendors
- Microsoft