Skip to main content

Microsoft Edge Remote Code Execution Vulnerability

Release Date: 17 Mar 2026 35101 Views

RISK: Extremely High Risk

TYPE: Clients - Browsers

TYPE: Browsers

A vulnerability was identified in Microsoft Edge. A remote attacker could exploit this vulnerability to trigger remote code execution, security restriction bypass and data manipulation on the targeted system.

 

Note:

CVE-2026-3909 is being exploited in the wild. A remote attacker could use this flaw to perform out of bounds memory access via a crafted HTML page. 

 

Hence, the risk level is rated as Extremely High Risk.


Impact

  • Remote Code Execution
  • Security Restriction Bypass
  • Data Manipulation

System / Technologies affected

  • Microsoft Edge version prior to 146.0.3856.62

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:

  • Update to version 146.0.3856.62 or later

Vulnerability Identifier


Source


Related Link