CVE-2025-26643CWE-449
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Medium · published March 7, 2025
What it is
The UI performs the wrong action in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
The record
Technical detail
- CVSS v3.1
- 5.4 · MEDIUM
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N/E:U/RL:O/RC:C
- CVSS v4.0
- Not supplied
- EPSS
- 0.00688 · 50.4th percentile
- Weakness
- CWE-449 · The UI Performs the Wrong Action
- Published
- 2025-03-07T19:02Z
EPSS history
Timeline