CVE-2025-26643CWE-449

Microsoft Edge (Chromium-based) Spoofing Vulnerability

Medium · published March 7, 2025

CVSS v3.1
5.4
EPSS
1%
Percentile
50.4
In the wild
Unconfirmed
What it is

The UI performs the wrong action in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

The record
Technical detail
CVSS v3.1
5.4 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N/E:U/RL:O/RC:C
CVSS v4.0
Not supplied
EPSS
0.00688 · 50.4th percentile
Weakness
CWE-449 · The UI Performs the Wrong Action
Published
2025-03-07T19:02Z
EPSS history
Timeline
  • 07 MAR 19:02Z
    Microsoft Edge (Chromium-based) Spoofing Vulnerability
    cvelistv5