Changeflow GovPing Data Privacy & Cybersecurity Microsoft Edge Android Vulnerability Allows Dis...
Priority review Notice Added Final

Microsoft Edge Android Vulnerability Allows Display of False Information

Favicon for wid.cert-bund.de CERT-Bund Security Advisories
Published March 15th, 2026
Detected March 16th, 2026
Email

Summary

CERT-Bund has issued a security advisory for a vulnerability in Microsoft Edge for Android, allowing remote attackers to display false information. The advisory details affected versions and provides mitigation information.

What changed

CERT-Bund has released security advisory WID-SEC-2026-0732 concerning a vulnerability in Microsoft Edge for Android (versions prior to 146.0.3856.59). This vulnerability, with a CVSS Base Score of 5.0, allows remote, anonymous attackers to exploit the browser to display false information. The advisory notes that mitigation is available.

While this is a security advisory and not a direct regulatory mandate, organizations utilizing Microsoft Edge on Android devices should review the advisory and apply available updates or mitigations to prevent potential information manipulation. Users of affected systems should be aware of the risk of being presented with misleading content. The advisory does not specify a compliance deadline, but prompt action is recommended to secure systems.

What to do next

  1. Review Microsoft Edge for Android security advisory WID-SEC-2026-0732
  2. Apply available updates or mitigations for Microsoft Edge on Android devices
  3. Inform users about the risk of displaying false information

Source document (simplified)

[WID-SEC-2026-0732] Microsoft Edge (Android): Schwachstelle ermöglicht Darstellen falscher Informationen CVSS Base Score 5.0 (mittel) CVSS Temporal Score 4.4 (mittel) Remoteangriff ja Datum 15.03.2026 Stand 16.03.2026 Mitigation ja

Betroffene Systeme

Betriebssystem

  • Android
  • Windows

Produktbeschreibung

Edge ist ein Web Browser von Microsoft.

Produkte

15.03.2026
- Microsoft Edge <146.0.3856.59

Angriff

Angriff

Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Microsoft Edge für Android ausnutzen, um falsche Informationen darzustellen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Source

Analysis generated by AI. Source diff and links are from the original.

Classification

Agency
CERT-Bund
Published
March 15th, 2026
Instrument
Notice
Legal weight
Non-binding
Stage
Final
Change scope
Substantive

Who this affects

Applies to
Technology companies
Geographic scope
de

Taxonomy

Primary area
Cybersecurity
Operational domain
IT Security
Topics
Software Vulnerabilities Mobile Security

Get Data Privacy & Cybersecurity alerts

Weekly digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get alerts for this source

We'll email you when CERT-Bund Security Advisories publishes new changes.

Free. Unsubscribe anytime.