ZeroHour

CVE-2026-0102

CVSS 3.1
3.1 low
EPSS
<1%p39
Published
()
Modified
Description

Under specific conditions, a malicious webpage may trigger autofill population after two consecutive taps, potentially without clear or intentional user consent. This could result in disclosure of stored autofill data such as addresses, email, or phone number metadata.

Vendors
microsoft
Products
edge chromium
Weakness
CWE-359
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.