Headline
CVE-2026-21223: Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
What kind of security feature could be bypassed by successfully exploiting this vulnerability?
An authenticated local attacker can disable or enable Windows VBS without administrative privileges, resulting in bypass of platform security hardening. This does not grant direct code execution as another user but weakens system security guarantees, enabling follow‑on attacks.