Microsoft Edge Vulnerabilities Pose Multiple Security Risks
The Hong Kong Computer Emergency Response Team Coordination Centre has identified multiple vulnerabilities in Microsoft Edge, affecting versions prior to 153.0.4234.49. These security flaws, categorized as medium risk, could allow remote attackers to exploit targeted systems for various malicious activities, including denial of service, security restriction bypass, sensitive information disclosure, spoofing, and remote code execution.
The vulnerabilities are associated with a series of CVEs, including CVE-2026-85047, CVE-2026-87438, and several others. The potential impact ranges from system crashes to unauthorized access and execution of arbitrary code. The risks are significant, highlighting the need for prompt action to mitigate these threats.
To address these issues, Microsoft has released updates. Users are strongly advised to upgrade to version 153.0.4234.49 or later. Detailed information regarding the vulnerabilities and the corresponding fixes can be found on Microsoft's official security bulletins and update guides.
The announcement was made on October 5, 2026, emphasizing the urgency of applying the necessary patches to ensure system security and integrity. Users are encouraged to visit the software vendor's website for more details and to apply the fixes as soon as possible.