| Vuln ID | Severity | Asset | STIG | Title | Status | Doc Status | Assigned To | Actions |
|---|---|---|---|---|---|---|---|---|
| V-235753 | CAT III | MONT-WS-92040 | Microsoft Edge Security Technical Implem... | URLs must be allowlisted for plugin use if used. | - | |||
Check TextThis requirement for "Allow pop-up windows on specific sites" is not required; this is optional. The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" must be set to "Enabled". Use the Windows Registry Editor to navigate to the following key: HKLM\SOFTWARE\Policies\Microsoft\Edge "PopupsAllowedForUrls" must be set as follows: HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\1 = mydomain.com HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\2 = myagency.mil If configured, the list of domains for which Microsoft Edge allows pop-ups may be allowlisted. Fix TextSet the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" to "Enabled". A list of allowlisted URLs may be specified here. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-MicrosoftEdge_Checks) was unable to determine a Status but found the below configuration on 10/23/2025: ResultHash: 2B22006EAC2C6E378F6B50C1F8B1771A4F182111 ~~~~~ 'Allow pop-up windows on specific sites' is Configured Allowed popups: =========================== 1 = msc.navy.mil 2 = navy.mil
Source: _Reviewed/MONT-WS-92040/Checklist/MONT-WS-92040_MSEdge_V2R3_20251023-142313.ckl
Scan Date: 2026-01-14T12:57:25.750497
Technology Area: Windows Operating System
|
||||||||
| V-235753 | CAT III | MONT-WS-92010 | Microsoft Edge Security Technical Implem... | URLs must be allowlisted for plugin use if used. | - | |||
Check TextThis requirement for "Allow pop-up windows on specific sites" is not required; this is optional. The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" must be set to "Enabled". Use the Windows Registry Editor to navigate to the following key: HKLM\SOFTWARE\Policies\Microsoft\Edge "PopupsAllowedForUrls" must be set as follows: HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\1 = mydomain.com HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\2 = myagency.mil If configured, the list of domains for which Microsoft Edge allows pop-ups may be allowlisted. Fix TextSet the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" to "Enabled". A list of allowlisted URLs may be specified here. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-MicrosoftEdge_Checks) was unable to determine a Status but found the below configuration on 10/23/2025: ResultHash: 2B22006EAC2C6E378F6B50C1F8B1771A4F182111 ~~~~~ 'Allow pop-up windows on specific sites' is Configured Allowed popups: =========================== 1 = msc.navy.mil 2 = navy.mil
Source: _Reviewed/MONT-WS-92010/Checklist/MONT-WS-92010_MSEdge_V2R3_20251023-141013.ckl
Scan Date: 2026-01-14T12:57:28.003629
Technology Area: Windows Operating System
|
||||||||
| V-235753 | CAT III | MONT-SW-89108 | Microsoft Edge Security Technical Implem... | URLs must be allowlisted for plugin use if used. | - | |||
Check TextThis requirement for "Allow pop-up windows on specific sites" is not required; this is optional. The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" must be set to "Enabled". Use the Windows Registry Editor to navigate to the following key: HKLM\SOFTWARE\Policies\Microsoft\Edge "PopupsAllowedForUrls" must be set as follows: HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\1 = mydomain.com HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\2 = myagency.mil If configured, the list of domains for which Microsoft Edge allows pop-ups may be allowlisted. Fix TextSet the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" to "Enabled". A list of allowlisted URLs may be specified here. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-MicrosoftEdge_Checks) was unable to determine a Status but found the below configuration on 12/17/2025: ResultHash: 2B22006EAC2C6E378F6B50C1F8B1771A4F182111 ~~~~~ 'Allow pop-up windows on specific sites' is Configured Allowed popups: =========================== 1 = msc.navy.mil 2 = navy.mil
Source: MONT-SW-89108_MSEdge_V2R3_20251217-202829.ckl
Scan Date: 2026-03-04T15:25:16.059827
Technology Area: Windows Operating System
|
||||||||
| V-235753 | CAT III | MONT-SW-89134 | Microsoft Edge Security Technical Implem... | URLs must be allowlisted for plugin use if used. | - | |||
Check TextThis requirement for "Allow pop-up windows on specific sites" is not required; this is optional. The policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" must be set to "Enabled". Use the Windows Registry Editor to navigate to the following key: HKLM\SOFTWARE\Policies\Microsoft\Edge "PopupsAllowedForUrls" must be set as follows: HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\1 = mydomain.com HKLM\SOFTWARE\Policies\Microsoft\Edge\PopupsAllowedForUrls\2 = myagency.mil If configured, the list of domains for which Microsoft Edge allows pop-ups may be allowlisted. Fix TextSet the policy value for "Computer Configuration/Administrative Templates/Microsoft Edge/Content settings/Allow pop-up windows on specific sites" to "Enabled". A list of allowlisted URLs may be specified here. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-MicrosoftEdge_Checks) was unable to determine a Status but found the below configuration on 12/17/2025: ResultHash: 2B22006EAC2C6E378F6B50C1F8B1771A4F182111 ~~~~~ 'Allow pop-up windows on specific sites' is Configured Allowed popups: =========================== 1 = msc.navy.mil 2 = navy.mil
Source: MONT-SW-89134_MSEdge_V2R3_20251217-201011.ckl
Scan Date: 2026-03-04T15:25:42.078580
Technology Area: Windows Operating System
|
||||||||