Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 1 of 87
CVE-2026-5290CRITICALCVSS 9.62026-04-02
CVE-2026-5290 [CRITICAL] Chromium: CVE-2026-5290 Use after free in Compositing
Chromium: CVE-2026-5290 Use after free in Compositing
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsof
msrc
CVE-2026-5289CRITICALCVSS 9.62026-04-02
CVE-2026-5289 [CRITICAL] Chromium: CVE-2026-5289 Use after free in Navigation
Chromium: CVE-2026-5289 Use after free in Navigation
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc
CVE-2026-5285HIGHCVSS 8.82026-04-02
CVE-2026-5285 [HIGH] Chromium: CVE-2026-5285 Use after free in WebGL
Chromium: CVE-2026-5285 Use after free in WebGL
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium
msrc
CVE-2026-5272HIGHCVSS 8.82026-04-02
CVE-2026-5272 [HIGH] Chromium: CVE-2026-5272 Heap buffer overflow in GPU
Chromium: CVE-2026-5272 Heap buffer overflow in GPU
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2026-5284HIGHCVSS 7.52026-04-02
CVE-2026-5284 [HIGH] Chromium: CVE-2026-5284 Use after free in Dawn
Chromium: CVE-2026-5284 Use after free in Dawn
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2026-5292HIGHCVSS 8.82026-04-02
CVE-2026-5292 [HIGH] Chromium: CVE-2026-5292 Out of bounds read in WebCodecs
Chromium: CVE-2026-5292 Out of bounds read in WebCodecs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
146.0.3856.97
04/02/2026
146.0.7680.178
FAQ: Why is t
msrc
CVE-2026-5281HIGHCVSS 8.8KEV2026-04-02
CVE-2026-5281 [HIGH] Chromium: CVE-2026-5281 Use after free in Dawn
Chromium: CVE-2026-5281 Use after free in Dawn
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. Google is aware that an exploit for CVE-2026-5281 exists in the wild.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open
msrc
CVE-2026-5275HIGHCVSS 8.82026-04-02
CVE-2026-5275 [HIGH] Chromium: CVE-2026-5275 Heap buffer overflow in ANGLE
Chromium: CVE-2026-5275 Heap buffer overflow in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Ed
msrc
CVE-2026-5277HIGHCVSS 7.52026-04-02
CVE-2026-5277 [HIGH] Chromium: CVE-2026-5277 Integer overflow in ANGLE
Chromium: CVE-2026-5277 Integer overflow in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chro
msrc
CVE-2026-5279HIGHCVSS 8.82026-04-02
CVE-2026-5279 [HIGH] Chromium: CVE-2026-5279 Object corruption in V8
Chromium: CVE-2026-5279 Object corruption in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium
msrc
CVE-2026-5274HIGHCVSS 8.82026-04-02
CVE-2026-5274 [HIGH] Chromium: CVE-2026-5274 Integer overflow in Codecs
Chromium: CVE-2026-5274 Integer overflow in Codecs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2026-5286HIGHCVSS 8.82026-04-02
CVE-2026-5286 [HIGH] Chromium: CVE-2026-5286 Use after free in Dawn
Chromium: CVE-2026-5286 Use after free in Dawn
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2026-5287HIGHCVSS 8.82026-04-02
CVE-2026-5287 [HIGH] Chromium: CVE-2026-5287 Use after free in PDF
Chromium: CVE-2026-5287 Use after free in PDF
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-bas
msrc
CVE-2026-5280HIGHCVSS 8.82026-04-02
CVE-2026-5280 [HIGH] Chromium: CVE-2026-5280 Use after free in WebCodecs
Chromium: CVE-2026-5280 Use after free in WebCodecs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2026-5276MEDIUMCVSS 6.52026-04-02
CVE-2026-5276 [MEDIUM] Chromium: CVE-2026-5276 Insufficient policy enforcement in WebUSB
Chromium: CVE-2026-5276 Insufficient policy enforcement in WebUSB
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which i
msrc
CVE-2026-5283MEDIUMCVSS 6.52026-04-02
CVE-2026-5283 [MEDIUM] Chromium: CVE-2026-5283 Inappropriate implementation in ANGLE
Chromium: CVE-2026-5283 Inappropriate implementation in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consum
msrc
CVE-2026-5273MEDIUMCVSS 6.32026-04-02
CVE-2026-5273 [MEDIUM] Chromium: CVE-2026-5273 Use after free in CSS
Chromium: CVE-2026-5273 Use after free in CSS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2026-5291MEDIUMCVSS 6.52026-04-02
CVE-2026-5291 [MEDIUM] Chromium: CVE-2026-5291 Inappropriate implementation in WebGL
Chromium: CVE-2026-5291 Inappropriate implementation in WebGL
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consum
msrc
CVE-2026-3916CRITICALCVSS 9.62026-03-10
CVE-2026-3916 [CRITICAL] Chromium: CVE-2026-3916 Out of bounds read in Web Speech
Chromium: CVE-2026-3916 Out of bounds read in Web Speech
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Mi
msrc
CVE-2026-3545CRITICALCVSS 9.62026-03-10
CVE-2026-3545 [CRITICAL] Chromium: CVE-2026-3545 Insufficient data validation in Navigation
Chromium: CVE-2026-3545 Insufficient data validation in Navigation
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
145.0.3800.97
03/06/2026
145.
msrc
1 / 87Next →