May 2025: Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2025-29825 Published on May 2, 2025
Microsoft Edge (Chromium-based) Spoofing Vulnerability
User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
Weakness Type
User Interface (UI) Misrepresentation of Critical Information
The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.
Products Associated with CVE-2025-29825
stack.watch emails you whenever new vulnerabilities are published in Microsoft Edge Chromium or Microsoft Edge Browser. Just hit a watch button to start following.
Affected Versions
Microsoft Edge (Chromium-based):- Version 1.0.0.0 and below 136.0.3240.50 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.