Microsoft Edge Vulnerability Allows Cookie and Password Theft

Discussion in 'other security issues & news' started by itman, Apr 24, 2017.

  1. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    https://www.bleepingcomputer.com/ne...lnerability-allows-cookie-and-password-theft/
     
  2. plat1098

    plat1098 Guest

    "The flaw affects only Edge because "UXSS/SOP bypasses tend to be particular to each browser."
    And patch Tuesday is still two weeks away-- will Microsoft issue a patch early perhaps? Anyone keep a running score of who has more vulnerabilities popping up: Edge or Internet Explorer?
     
  3. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
    Wow, sounds like serious bug.
     
  4. plat1098

    plat1098 Guest

    Well, Microsoft issued a cumulative update just one day later, GOOD. KB4016240, which brings Windows Creators version to 15063.250. Hard to tell if this specific issue was addressed for Edge, but they did fix the memory leak in Internet Explorer, and I see the difference already. Great!
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.