logo

CVE-2026-57989: Microsoft Edge Origin Validation Error Allows Remote Information Disclosure

ID: 5bdeb54a-3cf5-5db9-93b0-535913cf13d6

STIX ID: report--5bdeb54a-3cf5-5db9-93b0-535913cf13d6

Feed Name: CosmicBytez Labs

Threat Score
70/100

Date Published: 2026-07-26

Date Updated: 2026-07-27

...
...

**CVE-2026-57989:** Microsoft disclosed a high-severity (CVSS 7.4) origin-validation vulnerability in Chromium-based Microsoft Edge that can allow an unauthenticated remote attacker to exfiltrate cross-origin sensitive data when a user visits a malicious page; Microsoft released a patch on 2026-07-26 (update to Edge **150.0.4078.99** or later) and there were no reports of in-the-wild exploitation as of that date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.