CVE-2026-57989: Microsoft Edge Origin Validation Error Allows Remote Information Disclosure
ID: 5bdeb54a-3cf5-5db9-93b0-535913cf13d6
STIX ID: report--5bdeb54a-3cf5-5db9-93b0-535913cf13d6
Feed Name: CosmicBytez Labs
Threat Score
**CVE-2026-57989:** Microsoft disclosed a high-severity (CVSS 7.4) origin-validation vulnerability in Chromium-based Microsoft Edge that can allow an unauthenticated remote attacker to exfiltrate cross-origin sensitive data when a user visits a malicious page; Microsoft released a patch on 2026-07-26 (update to Edge **150.0.4078.99** or later) and there were no reports of in-the-wild exploitation as of that date.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
