Microsoft Edge Chromium vulnerabilities

205 known vulnerabilities affecting microsoft/edge_chromium.

Total CVEs
205
CISA KEV
9
actively exploited
Public exploits
3
Exploited in wild
7
Severity breakdown
CRITICAL11HIGH97MEDIUM90LOW7

Vulnerabilities

Page 3 of 11
CVE-2024-43496HIGHCVSS 8.8fixed in 129.0.2792.522024-09-19
CVE-2024-43496 [HIGH] CWE-787 CVE-2024-43496: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
nvd
CVE-2024-38221MEDIUMCVSS 4.3fixed in 129.0.2792.522024-09-19
CVE-2024-38221 [MEDIUM] CWE-79 CVE-2024-38221: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
CVE-2024-38207MEDIUMCVSS 6.3fixed in 128.0.2739.422024-08-23
CVE-2024-38207 [MEDIUM] CWE-843 CVE-2024-38207: Microsoft Edge (HTML-based) Memory Corruption Vulnerability Microsoft Edge (HTML-based) Memory Corruption Vulnerability
nvd
CVE-2024-38210HIGHCVSS 7.8fixed in 128.0.2739.422024-08-22
CVE-2024-38210 [HIGH] CWE-125 CVE-2024-38210: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
nvd
CVE-2024-38209HIGHCVSS 7.8fixed in 128.0.2739.422024-08-22
CVE-2024-38209 [HIGH] CWE-843 CVE-2024-38209: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
nvd
CVE-2024-7965HIGHCVSS 8.8KEVfixed in 128.0.2739.422024-08-21
CVE-2024-7965 [HIGH] CWE-787 CVE-2024-7965: Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
nvd
CVE-2024-43472HIGHCVSS 8.3fixed in 127.0.2651.1052024-08-16
CVE-2024-43472 [HIGH] CWE-416 CVE-2024-43472: Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
nvd
CVE-2024-38219CRITICALCVSS 9.0fixed in 127.0.2651.982024-08-12
CVE-2024-38219 [CRITICAL] CWE-843 CVE-2024-38219: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
nvd
CVE-2024-38218HIGHCVSS 7.8fixed in 127.0.2651.982024-08-12
CVE-2024-38218 [HIGH] CWE-843 CVE-2024-38218: Microsoft Edge (HTML-based) Memory Corruption Vulnerability Microsoft Edge (HTML-based) Memory Corruption Vulnerability
nvd
CVE-2024-30058MEDIUMCVSS 5.4fixed in 126.0.2592.562024-06-13
CVE-2024-30058 [MEDIUM] CWE-357 CVE-2024-30058: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
CVE-2024-38083MEDIUMCVSS 4.3fixed in 126.0.2592.562024-06-13
CVE-2024-38083 [MEDIUM] CWE-449 CVE-2024-38083: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
CVE-2024-30056MEDIUMCVSS 5.4fixed in 124.0.2478.1092024-05-25
CVE-2024-30056 [MEDIUM] CWE-359 CVE-2024-30056: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
nvd
CVE-2024-30055MEDIUMCVSS 5.4fixed in 124.0.2478.972024-05-14
CVE-2024-30055 [MEDIUM] CWE-451 CVE-2024-30055: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
CVE-2024-29991MEDIUMCVSS 5.0fixed in 124.0.2478.512024-04-19
CVE-2024-29991 [MEDIUM] CWE-94 CVE-2024-29991: Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
nvd
CVE-2024-29987MEDIUMCVSS 6.5fixed in 124.0.2478.512024-04-18
CVE-2024-29987 [MEDIUM] CWE-359 CVE-2024-29987: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
nvd
CVE-2024-29986MEDIUMCVSS 5.4fixed in 124.0.2478.512024-04-18
CVE-2024-29986 [MEDIUM] CWE-359 CVE-2024-29986: Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
nvd
CVE-2024-29049MEDIUMCVSS 4.7fixed in 122.0.2365.120≥ 123.0.2420.53, < 123.0.2420.812024-04-04
CVE-2024-29049 [MEDIUM] CWE-79 CVE-2024-29049: Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability
nvd
CVE-2024-29981MEDIUMCVSS 4.3fixed in 122.0.2365.120≥ 123.0.2420.53, < 123.0.2420.812024-04-04
CVE-2024-29981 [MEDIUM] CWE-1021 CVE-2024-29981: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
CVE-2024-26163MEDIUMCVSS 4.7fixed in 122.0.2365.922024-03-14
CVE-2024-26163 [MEDIUM] CWE-693 CVE-2024-26163: Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
nvd
CVE-2024-26192HIGHCVSS 8.2fixed in 122.0.2365.522024-02-23
CVE-2024-26192 [HIGH] CWE-359 CVE-2024-26192: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
nvd