Spoofing attack in Microsoft Edge - CVE-2026-45488
Published: July 17, 2026
Vulnerability details
The vulnerability allows a remote attacker to perform spoofing.
The vulnerability exists due to user interface misrepresentation of critical information in Microsoft Edge (Chromium-based) when rendering attacker-controlled web content. A remote attacker can host a specially crafted website and convince a user to visit it to perform spoofing.
User interaction is required to click a specially crafted URL and may involve responding to a popup requesting additional input.