<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>CVE-2026-11642 on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/cve-2026-11642/</link><description>Recent content in CVE-2026-11642 on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Mon, 16 Jun 2025 02:13:49 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/cve-2026-11642/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-11642: Use-After-Free in Edge Web Apps</title><link>https://zxcloudsecurity.co.uk/posts/microsoft-edge-chromium-use-after-free-web-apps-cve-2026-11642/</link><pubDate>Tue, 16 Jun 2026 02:13:49 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/microsoft-edge-chromium-use-after-free-web-apps-cve-2026-11642/</guid><description>CVE-2026-11642 is a use-after-free flaw in Chromium&amp;#39;s Web Apps component affecting Microsoft Edge. Update Edge immediately to mitigate code execution risk.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11642">Microsoft Security Response Center</a></p>
<hr>
<p>A use-after-free vulnerability (CVE-2026-11642) has been identified in the Web Apps component of Chromium, the open-source engine underpinning Microsoft Edge. Use-after-free flaws occur when a programme continues to reference memory after it has been freed, which can allow an attacker to execute arbitrary code. Microsoft Edge inherits this fix via its Chromium ingestion pipeline, and users should update to the patched version promptly.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure Microsoft Edge is updated to the latest version across all managed endpoints and virtual desktop environments, particularly where Edge is deployed within Azure Virtual Desktop or Windows 365 workloads. Consider enforcing browser update policies via Microsoft Intune or Group Policy to reduce the window of exposure for Chromium-based vulnerabilities.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11642">Chromium: CVE-2026-11642 Use after free in Web Apps</a></p>
]]></content:encoded></item></channel></rss>