Microsoft Edge (Chromium-based) versions before 124.0.2478.51: Information Disclosure Vulnerability.
The user would have to click on a specially crafted URL to be compromised by the attacker.
Vendor / Vendor Homepage:
Microsoft / microsoft[dot]com
Affected Products:
Microsoft Edge (Chromium-based) versions before 124.0.2478.51
Fixed Version:
Microsoft Edge (Chromium-based) versions 124.0.2478.51
CVE-ID:
CVE-2024-29986
CVSS Score - NVD: 5.4/Medium - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
References:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29986
https://cve.mitre.org/cgi-bin/cvename.cgi?name=2024-29986
https://nvd.nist.gov/vuln/detail/CVE-2024-29986
Hafiizh with YoKo Kho & Fahad Alamri from HakTrak Cybersecurity Squad