Published on: 22 September 2025
Microsoft has released security updates to address multiple vulnerabilities in Microsoft Edge. A remote attacker could entice a user to open a web page with specially crafted content on a vulnerable browser to exploit the vulnerabilities.
Reports indicate that an information disclosure vulnerability (CVE-2025-10585) is being exploited in the wild. Users are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
Successful exploitation of the vulnerabilities could lead to remote code execution, denial of service or information disclosure on an affected system.
System administrators and users of affected systems should update Microsoft Edge to version 140.0.3485.81 or later to address the issue.