Impact
A use‑after‑free (CWE-416) allows an attacker to corrupt memory and execute arbitrary code remotely, resulting in full system compromise, data breach, or service interruption.
Affected Systems
Microsoft Edge (Chromium‑based) may be impacted. Administrators should consult Microsoft’s security update guide to determine which installations require patching.
Risk and Exploitability
The CVSS score of 8.3 marks this vulnerability as High severity. The EPSS score of less than 1% indicates a low but non‑zero likelihood of exploitation, and the issue, it is inferred that the attack vector is remote over the network, likely requiring an attacker to deliver a crafted network resource that triggers the use‑after‑free. While low in current exploitation probability, the serious impact justifies immediate remediation.
OpenCVE Enrichment