#VU50399 Security features bypass in Microsoft Edge - CVE-2021-24113
Published: February 6, 2021
Microsoft Edge
Microsoft
Description
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to Microsoft Edge allows JavaScript to be executed in URL when copying then pasting it in the Edge browser. A remote attacker can trick the victim to copy and paste a specially crafted URL and execute arbitrary JavaScript code in victim's browser.