Jul 2026: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2026-57991 Published on July 3, 2026

Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

Vendor Advisory NVD

Weakness Type

What is an insecure temporary file Vulnerability?

The software attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

CVE-2026-57991 has been classified to as an insecure temporary file vulnerability or weakness.


Products Associated with CVE-2026-57991

Want to know whenever a new CVE is published for Microsoft Edge Chromium? stack.watch will email you.

 

Affected Versions

Microsoft Edge (Chromium-based):