Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 28 of 87
CVE-2024-29986MEDIUMCVSS 5.42024-04-09
CVE-2024-29986 [MEDIUM] CWE-359 Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is sensitive information.
FAQ: Why is the severity for this CVE rated as Moderate, but the CVSS score is higher than normal?
Pe
msrc
CVE-2024-3846MEDIUMCVSS 4.32024-04-09
CVE-2024-3846 [MEDIUM] Chromium: CVE-2024-3846 Inappropriate implementation in Prompts
Chromium: CVE-2024-3846 Inappropriate implementation in Prompts
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is co
msrc
CVE-2024-3847MEDIUMCVSS 6.12024-04-09
CVE-2024-3847 [MEDIUM] Chromium: CVE-2024-3847 Insufficient policy enforcement in WebUI
Chromium: CVE-2024-3847 Insufficient policy enforcement in WebUI
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2024-2625HIGHCVSS 8.82024-03-12
CVE-2024-2625 [HIGH] Chromium: CVE-2024-2625 Object lifecycle issue in V8
Chromium: CVE-2024-2625 Object lifecycle issue in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why is this Chrome CVE included
msrc
CVE-2024-2883HIGHCVSS 8.82024-03-12
CVE-2024-2883 [HIGH] Chromium: CVE-2024-2883 Use after free in ANGLE
Chromium: CVE-2024-2883 Use after free in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.65
3/26/2024
123.0.6312.86/.87
Extended Stable
122.0.2365.113
3/26/2024
122.0.
msrc
CVE-2024-2885HIGHCVSS 8.82024-03-12
CVE-2024-2885 [HIGH] Chromium: CVE-2024-2885 Use after free in Dawn
Chromium: CVE-2024-2885 Use after free in Dawn
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.65
3/26/2024
123.0.6312.86/.87
Extended Stable
122.0.2365.113
3/26/2024
122.0.62
msrc
CVE-2024-2886HIGHCVSS 7.52024-03-12
CVE-2024-2886 [HIGH] Chromium: CVE-2024-2886 Use after free in WebCodecs
Chromium: CVE-2024-2886 Use after free in WebCodecs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.65
3/26/2024
123.0.6312.86/.87
Extended Stable
122.0.2365.113
3/26/202
msrc
CVE-2024-2173HIGHCVSS 8.82024-03-12
CVE-2024-2173 [HIGH] Chromium: CVE-2024-2173 Out of bounds memory access in V8
Chromium: CVE-2024-2173 Out of bounds memory access in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
122.0.2365.80
3/7/2024
122.0.6261.111/.112
FAQ: Why is this Chrome CV
msrc
CVE-2024-2887HIGHCVSS 7.72024-03-12
CVE-2024-2887 [HIGH] Chromium: CVE-2024-2887 Type Confusion in WebAssembly
Chromium: CVE-2024-2887 Type Confusion in WebAssembly
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.65
3/26/2024
123.0.6312.86/.87
Extended Stable
122.0.2365.113
3/26
msrc
CVE-2024-2174HIGHCVSS 8.82024-03-12
CVE-2024-2174 [HIGH] Chromium: CVE-2024-2174 Inappropriate implementation in V8
Chromium: CVE-2024-2174 Inappropriate implementation in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
122.0.2365.80
3/7/2024
122.0.6261.111/.112
FAQ: Why is this Chrome
msrc
CVE-2024-2176HIGHCVSS 8.82024-03-12
CVE-2024-2176 [HIGH] Chromium: CVE-2024-2176 Use after free in FedCM
Chromium: CVE-2024-2176 Use after free in FedCM
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
122.0.2365.80
3/7/2024
122.0.6261.111/.112
FAQ: Why is this Chrome CVE included in the Se
msrc
CVE-2024-2400HIGHCVSS 8.82024-03-12
CVE-2024-2400 [HIGH] Chromium: CVE-2024-2400 Use after free in Performance Manager
Chromium: CVE-2024-2400 Use after free in Performance Manager
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2024-2627HIGHCVSS 8.82024-03-12
CVE-2024-2627 [HIGH] Chromium: CVE-2024-2627 Use after free in Canvas
Chromium: CVE-2024-2627 Use after free in Canvas
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why is this Chrome CVE included in the S
msrc
CVE-2024-2628MEDIUMCVSS 4.32024-03-12
CVE-2024-2628 [MEDIUM] Chromium: CVE-2024-2628 Inappropriate implementation in Downloads
Chromium: CVE-2024-2628 Inappropriate implementation in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why
msrc
CVE-2024-2631MEDIUMCVSS 4.32024-03-12
CVE-2024-2631 [MEDIUM] Chromium: CVE-2024-2631 Inappropriate implementation in iOS
Chromium: CVE-2024-2631 Inappropriate implementation in iOS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why is this Chro
msrc
CVE-2024-29057MEDIUMCVSS 4.32024-03-12
CVE-2024-29057 [MEDIUM] CWE-357 Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
The user would have to click on a specially crafted URL to be compromised by the attacker.
FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for
msrc
CVE-2024-2629MEDIUMCVSS 4.32024-03-12
CVE-2024-2629 [MEDIUM] Chromium: CVE-2024-2629 Incorrect security UI in iOS
Chromium: CVE-2024-2629 Incorrect security UI in iOS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why is this Chrome CVE include
msrc
CVE-2024-2626MEDIUMCVSS 6.52024-03-12
CVE-2024-2626 [MEDIUM] Chromium: CVE-2024-2626 Out of bounds read in Swiftshader
Chromium: CVE-2024-2626 Out of bounds read in Swiftshader
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why is this Chrome C
msrc
CVE-2024-2630MEDIUMCVSS 6.52024-03-12
CVE-2024-2630 [MEDIUM] Chromium: CVE-2024-2630 Inappropriate implementation in iOS
Chromium: CVE-2024-2630 Inappropriate implementation in iOS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: Why is this Chro
msrc
CVE-2024-26247MEDIUMCVSS 4.72024-03-12
CVE-2024-26247 [MEDIUM] CWE-269 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
FAQ:
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
123.0.2420.53
3/22/2024
123.0.6312.58/.59
FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability?
An exploited vulnerability can affect re
msrc