Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.3
CVE-2026-58281: Microsoft Edge (Chromium-based) Can Execute Unwanted Code Remotely
CVE-2026-58281
CVE-2026-58281
Summary
If not updated, Microsoft Edge users may be at risk of hackers executing malicious code on their devices without permission. This is a serious security risk because it allows attackers to take control of a device. Microsoft will likely release a patch to fix this issue, so it's essential to keep Edge up to date to stay protected.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | microsoft edge (chromium-based) | < 150.0.4078.48 |
| microsoft | edge_chromium |
< 150.0.4078.48 cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:-:*:*:* |
Original title
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Original description
Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
nvd CVSS3.1
8.3
Vulnerability type
CWE-502
Deserialization of Untrusted Data
Published: 11 Jul 2026 · Updated: 16 Jul 2026 · First seen: 11 Jul 2026