📣 Send us your press release
Site updates every 15 minutes
Technology

Microsoft Closes Serious Security Vulnerability in Edge Browser

Microsoft has released a patch for a critical zero-day vulnerability in its Edge browser. The flaw allowed remote code execution via manipulated web pages, potentially leading to system compromise.

26 July 2026
Microsoft Closes Serious Security Vulnerability in Edge Browser

Microsoft has addressed a critical security vulnerability in its Edge web browser that allowed for remote code execution through compromised web pages. Identified as a zero-day vulnerability (CVE-2024-7971), the flaw enabled attackers to run malicious code on a user's system remotely. In the most severe cases, this could have resulted in data theft, malware installation, or a complete system takeover.

Zero-day vulnerabilities are particularly dangerous as they are exploited before developers are aware of them, leaving users unprotected until a patch is released. Microsoft has confirmed that this vulnerability was actively being exploited, highlighting the urgent need for users to update their browsers.

Users are strongly advised to install the latest update immediately. This can typically be done manually through the Edge browser's 'Help and feedback' menu, by selecting 'About Microsoft Edge'. After updating, the browser version should be at least 128.0.2739.42. In some instances, automatic updates were not deployed, and manual updating via the browser itself proved successful where OS-level Windows Update checks failed.

The fix is crucial for protecting users from web-based threats. While specific to the Edge browser, its widespread use makes this a significant cybersecurity concern.

Original source: heise.de