Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.3

CVE-2026-58281: Microsoft Edge (Chromium-based) Can Execute Unwanted Code Remotely

CVE-2026-58281 CVE-2026-58281
Summary

If not updated, Microsoft Edge users may be at risk of hackers executing malicious code on their devices without permission. This is a serious security risk because it allows attackers to take control of a device. Microsoft will likely release a patch to fix this issue, so it's essential to keep Edge up to date to stay protected.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
microsoft microsoft edge (chromium-based) < 150.0.4078.48
microsoft edge_chromium < 150.0.4078.48
cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:-:*:*:*
Original title
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Original description
Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
nvd CVSS3.1 8.3
Vulnerability type
CWE-502 Deserialization of Untrusted Data
Published: 11 Jul 2026 · Updated: 16 Jul 2026 · First seen: 11 Jul 2026