SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-66310

HIGH · CVSS 7.7 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-08-04 · Last synced 2026-09-03

CyberRota Analysis

AI-Generated

Microsoft Edge for Android is vulnerable to external control of file names or paths, enabling unauthorized attackers to disclose sensitive information stored locally on affected devices. This high-severity vulnerability poses a significant risk to users who access sensitive data through the browser. Organizations and individuals utilizing Microsoft Edge on Android should prioritize immediate updates to mitigate potential data exposure.

CVE
CVE-2026-66310
Severity
HIGH
CVSS
7.7
EPSS
0.22%
Microsoft Android

Original NVD Description

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)