CVE-2025-29795
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2025-29795 is a vulnerability affecting Microsoft Edge, the Chromium-based web browser. An attacker who can manipulate a user to click a malicious link can exploit this issue for local privilege escalation. The browser fails to properly resolve links before accessing files, enabling the attacker to potentially execute arbitrary code with elevated privileges. This flaw poses a significant risk, as it can be used to compromise the security of a system or network through a targeted phishing attack. Users are advised to update their browser as soon as a patch becomes available to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.