cbcvebase.

Microsoft Edge vulnerabilities

349 known vulnerabilities affecting microsoft/microsoft_edge.

Total CVEs
349
CISA KEV
2
actively exploited
Public exploits
8
Exploited in wild
2
Severity breakdown
CRITICAL9HIGH168MEDIUM164LOW8

Vulnerabilities

Page 15 of 18
CVE-2018-1021P4MEDIUMCVSS 4.3vWindows 10 Version 1709 for 32-bit SystemsvWindows 10 Version 1709 for x64-based Systems2018-05-09
CVE-2018-1021 [MEDIUM] CVE-2018-1021: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in mem An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8123.
nvd
CVE-2018-8545P4MEDIUMCVSS 4.3vWindows 10 Version 1803 for 32-bit SystemsvWindows 10 Version 1803 for ARM64-based Systems+5 more2018-11-14
CVE-2018-8545 [MEDIUM] CVE-2018-8545: An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin r An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka "Microsoft Edge Information Disclosure Vulnerability." This affects Microsoft Edge.
nvd
CVE-2018-0871P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+9 more2018-06-14
CVE-2018-0871 [MEDIUM] CWE-200 CVE-2018-0871: An information disclosure vulnerability exists when Edge improperly marks files, aka "Microsoft Edge An information disclosure vulnerability exists when Edge improperly marks files, aka "Microsoft Edge Information Disclosure Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8234.
nvd
CVE-2019-0643P4MEDIUMCVSS 4.3vWindows 10 Version 1809 for 32-bit SystemsvWindows 10 Version 1809 for x64-based Systems+2 more2019-03-05
CVE-2019-0643 [MEDIUM] CVE-2019-0643: An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin r An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka 'Microsoft Edge Information Disclosure Vulnerability'.
nvd
CVE-2023-29354P4MEDIUMCVSS 4.7≥ 1.0.0, < 113.0.1774.352023-05-05
CVE-2023-29354 [MEDIUM] CWE-693 CVE-2023-29354: Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
nvd
CVE-2021-43221P4MEDIUMCVSS 4.2≥ 1.0.0, < 96.0 1954.292021-11-24
CVE-2021-43221 [MEDIUM] CWE-94 CVE-2021-43221: Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
nvd
CVE-2026-58597P4MEDIUMCVSS 4.3≥ 1.0.0.0, < 150.0.4078.482026-07-03
CVE-2026-58597 [MEDIUM] CWE-357 CVE-2026-58597: Insufficient ui warning of dangerous operations in Microsoft Edge (Chromium-based) allows an unautho Insufficient ui warning of dangerous operations in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2018-1025P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+9 more2018-05-09
CVE-2018-1025 [MEDIUM] CVE-2018-1025: An information disclosure vulnerability exists when affected Microsoft browsers improperly handle ob An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory, aka "Microsoft Browser Information Disclosure Vulnerability." This affects Internet Explorer 11, Microsoft Edge.
nvd
CVE-2018-8452P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+9 more2018-09-13
CVE-2018-8452 [MEDIUM] CWE-200 CVE-2018-8452: An information disclosure vulnerability exists when the scripting engine does not properly handle ob An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft browsers, aka "Scripting Engine Information Disclosure Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge.
nvd
CVE-2018-0892P4MEDIUMCVSS 4.3vWindows 10 Version 1607 for 32-bit SystemsvWindows 10 Version 1607 for x64-based Systems+5 more2018-04-12
CVE-2018-0892 [MEDIUM] CWE-200 CVE-2018-0892: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in mem An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-0998.
nvd
CVE-2023-36880P4MEDIUMCVSS 4.8≥ 1.0.0, < 120.0.2210.612023-12-07
CVE-2023-36880 [MEDIUM] CVE-2023-36880: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
nvd
CVE-2024-26247P4MEDIUMCVSS 4.7≥ 1.0.0, < 123.0.2420.532024-03-22
CVE-2024-26247 [MEDIUM] CWE-269 CVE-2024-26247: Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
nvd
CVE-2026-33118P4MEDIUMCVSS 4.3≥ 1.0.0.0, < 147.0.3912.602026-04-10
CVE-2026-33118 [MEDIUM] CWE-451 CVE-2026-33118: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
CVE-2018-8425P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+9 more2018-09-13
CVE-2018-8425 [MEDIUM] CWE-290 CVE-2018-8425: A spoofing vulnerability exists when Microsoft Edge improperly handles specific HTML content, aka "M A spoofing vulnerability exists when Microsoft Edge improperly handles specific HTML content, aka "Microsoft Edge Spoofing Vulnerability." This affects Microsoft Edge.
nvd
CVE-2018-8112P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+9 more2018-05-09
CVE-2018-8112 [MEDIUM] CWE-346 CVE-2018-8112: A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of di A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of different origins, aka "Microsoft Edge Security Feature Bypass Vulnerability." This affects Microsoft Edge.
nvd
CVE-2019-0654P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+15 more2019-03-05
CVE-2019-0654 [MEDIUM] CVE-2019-0654: A spoofing vulnerability exists when Microsoft browsers improperly handles specific redirects, aka ' A spoofing vulnerability exists when Microsoft browsers improperly handles specific redirects, aka 'Microsoft Browser Spoofing Vulnerability'.
nvd
CVE-2018-8235P4MEDIUMCVSS 4.3vWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+9 more2018-06-14
CVE-2018-8235 [MEDIUM] CWE-346 CVE-2018-8235: A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of di A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of different origins, aka "Microsoft Edge Security Feature Bypass Vulnerability." This affects Microsoft Edge.
nvd
CVE-2019-1081P4MEDIUMCVSS 4.2≥ 1.0..0, < publication2019-06-12
CVE-2019-1081 [MEDIUM] CWE-200 CVE-2019-1081: An information disclosure vulnerability exists when affected Microsoft browsers improperly handle ob An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit the vulnerability, in a web-based attack scenario, an attacker could host a website that is used to a
nvd
CVE-2024-21423P4MEDIUMCVSS 4.8≥ 1.0.0, < 122.0.2365.522024-02-23
CVE-2024-21423 [MEDIUM] CWE-693 CVE-2024-21423: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
nvd
CVE-2023-35392P4MEDIUMCVSS 4.7≥ 1.0.0, < 115.0.1901.1832023-07-21
CVE-2023-35392 [MEDIUM] CWE-290 CVE-2023-35392: Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability
nvd
Microsoft Edge vulnerabilities | cvebase