Msrc Microsoft Edge vulnerabilities

1,721 known vulnerabilities affecting msrc/microsoft_edge.

Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7

Vulnerabilities

Page 28 of 87
CVE-2024-29986MEDIUMCVSS 5.42024-04-09
CVE-2024-29986 [MEDIUM] CWE-359 Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability FAQ: What type of information could be disclosed by this vulnerability? The type of information that could be disclosed if an attacker successfully exploited this vulnerability is sensitive information. FAQ: Why is the severity for this CVE rated as Moderate, but the CVSS score is higher than normal? Pe
msrc
CVE-2024-3846MEDIUMCVSS 4.32024-04-09
CVE-2024-3846 [MEDIUM] Chromium: CVE-2024-3846 Inappropriate implementation in Prompts Chromium: CVE-2024-3846 Inappropriate implementation in Prompts Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is co
msrc
CVE-2024-3847MEDIUMCVSS 6.12024-04-09
CVE-2024-3847 [MEDIUM] Chromium: CVE-2024-3847 Insufficient policy enforcement in WebUI Chromium: CVE-2024-3847 Insufficient policy enforcement in WebUI Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2024-2625HIGHCVSS 8.82024-03-12
CVE-2024-2625 [HIGH] Chromium: CVE-2024-2625 Object lifecycle issue in V8 Chromium: CVE-2024-2625 Object lifecycle issue in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why is this Chrome CVE included
msrc
CVE-2024-2883HIGHCVSS 8.82024-03-12
CVE-2024-2883 [HIGH] Chromium: CVE-2024-2883 Use after free in ANGLE Chromium: CVE-2024-2883 Use after free in ANGLE Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.65 3/26/2024 123.0.6312.86/.87 Extended Stable 122.0.2365.113 3/26/2024 122.0.
msrc
CVE-2024-2885HIGHCVSS 8.82024-03-12
CVE-2024-2885 [HIGH] Chromium: CVE-2024-2885 Use after free in Dawn Chromium: CVE-2024-2885 Use after free in Dawn Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.65 3/26/2024 123.0.6312.86/.87 Extended Stable 122.0.2365.113 3/26/2024 122.0.62
msrc
CVE-2024-2886HIGHCVSS 7.52024-03-12
CVE-2024-2886 [HIGH] Chromium: CVE-2024-2886 Use after free in WebCodecs Chromium: CVE-2024-2886 Use after free in WebCodecs Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.65 3/26/2024 123.0.6312.86/.87 Extended Stable 122.0.2365.113 3/26/202
msrc
CVE-2024-2173HIGHCVSS 8.82024-03-12
CVE-2024-2173 [HIGH] Chromium: CVE-2024-2173 Out of bounds memory access in V8 Chromium: CVE-2024-2173 Out of bounds memory access in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 122.0.2365.80 3/7/2024 122.0.6261.111/.112 FAQ: Why is this Chrome CV
msrc
CVE-2024-2887HIGHCVSS 7.72024-03-12
CVE-2024-2887 [HIGH] Chromium: CVE-2024-2887 Type Confusion in WebAssembly Chromium: CVE-2024-2887 Type Confusion in WebAssembly Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.65 3/26/2024 123.0.6312.86/.87 Extended Stable 122.0.2365.113 3/26
msrc
CVE-2024-2174HIGHCVSS 8.82024-03-12
CVE-2024-2174 [HIGH] Chromium: CVE-2024-2174 Inappropriate implementation in V8 Chromium: CVE-2024-2174 Inappropriate implementation in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 122.0.2365.80 3/7/2024 122.0.6261.111/.112 FAQ: Why is this Chrome
msrc
CVE-2024-2176HIGHCVSS 8.82024-03-12
CVE-2024-2176 [HIGH] Chromium: CVE-2024-2176 Use after free in FedCM Chromium: CVE-2024-2176 Use after free in FedCM Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 122.0.2365.80 3/7/2024 122.0.6261.111/.112 FAQ: Why is this Chrome CVE included in the Se
msrc
CVE-2024-2400HIGHCVSS 8.82024-03-12
CVE-2024-2400 [HIGH] Chromium: CVE-2024-2400 Use after free in Performance Manager Chromium: CVE-2024-2400 Use after free in Performance Manager Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2024-2627HIGHCVSS 8.82024-03-12
CVE-2024-2627 [HIGH] Chromium: CVE-2024-2627 Use after free in Canvas Chromium: CVE-2024-2627 Use after free in Canvas Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why is this Chrome CVE included in the S
msrc
CVE-2024-2628MEDIUMCVSS 4.32024-03-12
CVE-2024-2628 [MEDIUM] Chromium: CVE-2024-2628 Inappropriate implementation in Downloads Chromium: CVE-2024-2628 Inappropriate implementation in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why
msrc
CVE-2024-2631MEDIUMCVSS 4.32024-03-12
CVE-2024-2631 [MEDIUM] Chromium: CVE-2024-2631 Inappropriate implementation in iOS Chromium: CVE-2024-2631 Inappropriate implementation in iOS Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why is this Chro
msrc
CVE-2024-29057MEDIUMCVSS 4.32024-03-12
CVE-2024-29057 [MEDIUM] CWE-357 Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do? The user would have to click on a specially crafted URL to be compromised by the attacker. FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for
msrc
CVE-2024-2629MEDIUMCVSS 4.32024-03-12
CVE-2024-2629 [MEDIUM] Chromium: CVE-2024-2629 Incorrect security UI in iOS Chromium: CVE-2024-2629 Incorrect security UI in iOS Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why is this Chrome CVE include
msrc
CVE-2024-2626MEDIUMCVSS 6.52024-03-12
CVE-2024-2626 [MEDIUM] Chromium: CVE-2024-2626 Out of bounds read in Swiftshader Chromium: CVE-2024-2626 Out of bounds read in Swiftshader Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why is this Chrome C
msrc
CVE-2024-2630MEDIUMCVSS 6.52024-03-12
CVE-2024-2630 [MEDIUM] Chromium: CVE-2024-2630 Inappropriate implementation in iOS Chromium: CVE-2024-2630 Inappropriate implementation in iOS Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: Why is this Chro
msrc
CVE-2024-26247MEDIUMCVSS 4.72024-03-12
CVE-2024-26247 [MEDIUM] CWE-269 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability FAQ: Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 123.0.2420.53 3/22/2024 123.0.6312.58/.59 FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability? An exploited vulnerability can affect re
msrc