[CIVN-2026-0065] Remote Code Execution Vulnerability in Microsoft Edge (chromium based)

By Published On: February 3, 2026

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA256
Remote Code Execution Vulnerability in Microsoft Edge (chromium based) 
Indian – Computer Emergency Response Team (https://www.cert-in.org.in)
Severity Rating: HIGH
Software Affected
Microsoft Edge versions prior to 144.0.3719.92
Overview
A vulnerability has been reported in Microsoft Edge, which could allow a remote attacker to execute arbitrary code on the targeted system.
 
Target Audience:
All end user organizations and individuals using Microsoft Edge.
Risk Assessment:
High risk of unauthorized access to sensitive data, system compromise.
Impact Assessment:
Potential for remote code execution, sensitive data exposure.
Description
Microsoft Edge is a web browser developed by Microsoft using the chromium engine, offering fast performance, enhanced Security and compatibility with modern web standards while integrating with Microsoft services.
Remote Code Execution vulnerability exists in Microsoft Edge due to race condition error in V8. A remote attacker could exploit this vulnerability by persuading a victim to visit specially crafted web page.
Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the targeted system.
Solution
Apply appropriate fix/patches as mentioned:
https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#january-23-2026
Vendor Information
Microsoft
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-1220
References
Microsoft
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-1220
CVE Name
CVE-2026-1220
– —
Thanks and Regards,
CERT-In
Incident Response Help Desk
e-mail: incident@cert-in.org.in
Phone: +91-11-22902657
Toll Free Number: 1800-11-4949
Toll Free Fax : 1800-11-6969
Web: http://www.cert-in.org.in
PGP Fingerprint: A768 083E 4475 5725 B81A A379 2156 C0C0 B620 D0B4
PGP Key information:
https://www.cert-in.org.in/s2cMainServlet?pageid=CONTACTUS
Postal address:
Indian Computer Emergency Response Team (CERT-In)
Ministry of Electronics and Information Technology
Government of India
Electronics Niketan
6, C.G.O. Complex
New Delhi-110 003
—–BEGIN PGP SIGNATURE—–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=Fy95
—–END PGP SIGNATURE—–

Share this article