Daily digest

Automated CVE article

CVE-2026-58289 Daily CVE Watchlist Note

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Rank 9CRITICAL 9.0EPSS 40.9%

Automation Boundary

This is an automated CVE watchlist article generated from public vulnerability-prioritization feeds. It is not a reviewed threat-activity brief and does not claim active exploitation unless the source data includes an exploitation signal.

CVE Snapshot

  • CVE: CVE-2026-58289
  • Daily rank: 9
  • Severity: CRITICAL
  • CVSS: 9.0
  • EPSS percentile: 40.9%
  • Exploitation signal in source data: no
  • NVD publication time: 2026-07-03T21:17:03.640Z

Source Summary

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

Defender Review Notes

  • Confirm whether the affected product appears in your environment before escalating.
  • Check vendor guidance and patch availability from the linked NVD reference.
  • Treat this as prioritization input, not incident evidence, when no exploitation signal is present.
  • Promote to reviewed threat activity only if a reliable source later documents exploitation, campaign use, actor activity, ransomware use, or CISA KEV inclusion.

Source Notes

This article was generated from the daily digest 2026-07-04-top-10-cves using NVD publication data, CISA KEV context, and FIRST EPSS enrichment.