Under specific conditions, a malicious webpage may trigger autofill population after two consecutive taps, potentially without clear or intentional user consent. This could result in disclosure of stored autofill data such as addresses, email, or phone number metadata.
References
| Link | Resource |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-0102 | Vendor Advisory |
Configurations
History
19 Feb 2026, 15:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-0102 - Vendor Advisory | |
| CPE | cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:* | |
| First Time |
Microsoft edge Chromium
Microsoft |
18 Feb 2026, 17:51
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
17 Feb 2026, 20:22
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-17 20:22
Updated : 2026-02-19 15:39
NVD link : CVE-2026-0102
Mitre link : CVE-2026-0102
CVE.ORG link : CVE-2026-0102
JSON object : View
Products Affected
microsoft
- edge_chromium
CWE
CWE-359
Exposure of Private Personal Information to an Unauthorized Actor
