Published on: 29 November 2022
Microsoft released a security update to address a vulnerability in Microsoft Edge. A remote attacker could entice a user to open a web page with specially crafted content on a vulnerable browser to exploit the vulnerability.
Reports indicate that the vulnerability (CVE-2022-4135) is being exploited in the wild. System administrators and users are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
Successful exploitation of the vulnerability could lead to remote code execution on an affected system.
System administrators of affected systems should update Microsoft Edge to version 107.0.1418.62 or later to address the issue.
The details of security updates can be found at:
https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#november-28-2022