Jul 2026: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-58290 Published on July 3, 2026

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Vendor Advisory NVD

Weakness Type

What is an Object Type Confusion Vulnerability?

The program allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

CVE-2026-58290 has been classified to as an Object Type Confusion vulnerability or weakness.


Products Associated with CVE-2026-58290

Want to know whenever a new CVE is published for Microsoft Edge Chromium? stack.watch will email you.

 

Affected Versions

Microsoft Edge (Chromium-based):