Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 33 of 87
CVE-2023-5852HIGHCVSS 8.82023-11-14
CVE-2023-5852 [HIGH] Chromium: CVE-2023-5852 Use after free in Printing
Chromium: CVE-2023-5852 Use after free in Printing
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045.105/.106
FAQ: Why is this C
msrc
CVE-2023-5857HIGHCVSS 8.82023-11-14
CVE-2023-5857 [HIGH] Chromium: CVE-2023-5857 Inappropriate implementation in Downloads
Chromium: CVE-2023-5857 Inappropriate implementation in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045
msrc
CVE-2023-5856HIGHCVSS 8.82023-11-14
CVE-2023-5856 [HIGH] Chromium: CVE-2023-5856 Use after free in Side Panel
Chromium: CVE-2023-5856 Use after free in Side Panel
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045.105/.106
FAQ: Why is th
msrc
CVE-2023-5855HIGHCVSS 8.82023-11-14
CVE-2023-5855 [HIGH] Chromium: CVE-2023-5855 Use after free in Reading Mode
Chromium: CVE-2023-5855 Use after free in Reading Mode
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045.105/.106
FAQ: Why i
msrc
CVE-2023-6347HIGHCVSS 8.82023-11-14
CVE-2023-6347 [HIGH] Chromium: CVE-2023-6347 Use after free in Mojo
Chromium: CVE-2023-6347 Use after free in Mojo
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2023-5858MEDIUMCVSS 4.32023-11-14
CVE-2023-5858 [MEDIUM] Chromium: CVE-2023-5858 Inappropriate implementation in WebApp Provider
Chromium: CVE-2023-5858 Inappropriate implementation in WebApp Provider
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2
msrc
CVE-2023-5853MEDIUMCVSS 4.32023-11-14
CVE-2023-5853 [MEDIUM] Chromium: CVE-2023-5853 Incorrect security UI in Downloads
Chromium: CVE-2023-5853 Incorrect security UI in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045.105/.106
msrc
CVE-2023-36026MEDIUMCVSS 4.32023-11-14
CVE-2023-36026 [MEDIUM] Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
FAQ: Why is the severity for this CVE rated as Moderate, but the CVSS score is higher than normal?
Per our severity guidelines, the amount of user interaction or preconditions required to allow this sort of exploitation downgraded the severity, specifically it says, "If a bug requires more than a click, a key press, or several preconditions, the severity will be
msrc
CVE-2023-5859MEDIUMCVSS 4.32023-11-14
CVE-2023-5859 [MEDIUM] Chromium: CVE-2023-5859 Incorrect security UI in Picture In Picture
Chromium: CVE-2023-5859 Incorrect security UI in Picture In Picture
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.
msrc
CVE-2023-36022MEDIUMCVSS 6.62023-11-14
CVE-2023-36022 [MEDIUM] Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of availability (A:L)? What does that mean for this vulnerability?
The performance can be interrupted and/or reduced, but the attacker cannot fully deny service.
FAQ: According to the CVSS metric, the attack vector is local (AV:L). W
msrc
CVE-2023-5851MEDIUMCVSS 4.32023-11-14
CVE-2023-5851 [MEDIUM] Chromium: CVE-2023-5851 Inappropriate implementation in Downloads
Chromium: CVE-2023-5851 Inappropriate implementation in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.60
msrc
CVE-2023-36008MEDIUMCVSS 6.62023-11-14
CVE-2023-36008 [MEDIUM] CWE-416 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Date Released
Based on Chromium Version
Stable
119.0.2151.72
11/16/2023
119.0.6045.159/.160
Extended Stable
118.0.2088.109
11/16/2023
118.0.5993.144
FAQ: According to the CVSS metric, the attack vector is local (AV:L). Why
msrc
CVE-2023-5850MEDIUMCVSS 4.32023-11-14
CVE-2023-5850 [MEDIUM] Chromium: CVE-2023-5850 Incorrect security UI in Downloads
Chromium: CVE-2023-5850 Incorrect security UI in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045.105/.106
msrc
CVE-2023-5480MEDIUMCVSS 6.12023-11-14
CVE-2023-5480 [MEDIUM] Chromium: CVE-2023-5480 Inappropriate implementation in Payments
Chromium: CVE-2023-5480 Inappropriate implementation in Payments
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
119.0.2151.44
11/02/2023
119.0.6045
msrc
CVE-2023-5472HIGHCVSS 8.82023-10-10
CVE-2023-5472 [HIGH] Chromium: CVE-2023-5472: Use after free in Profiles
Chromium: CVE-2023-5472: Use after free in Profiles
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-5476HIGHCVSS 8.82023-10-10
CVE-2023-5476 [HIGH] Chromium: CVE-2023-5476 Use after free in Blink History
Chromium: CVE-2023-5476 Use after free in Blink History
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
118.0.2088.46
118.0.5993.
msrc
CVE-2023-5346HIGHCVSS 8.82023-10-10
CVE-2023-5346 [HIGH] Chromium: CVE-2023-5346 Type Confusion in V8
Chromium: CVE-2023-5346 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc
CVE-2023-5474HIGHCVSS 8.82023-10-10
CVE-2023-5474 [HIGH] Chromium: CVE-2023-5474 Heap buffer overflow in PDF
Chromium: CVE-2023-5474 Heap buffer overflow in PDF
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
118.0.2088.46
118.0.5993.70/.71
1
msrc
CVE-2023-5218HIGHCVSS 8.82023-10-10
CVE-2023-5218 [HIGH] Chromium: CVE-2023-5218 Use after free in Site Isolation
Chromium: CVE-2023-5218 Use after free in Site Isolation
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
118.0.2088.46
118.0.599
msrc
CVE-2023-5473MEDIUMCVSS 6.32023-10-10
CVE-2023-5473 [MEDIUM] Chromium: CVE-2023-5473 Use after free in Cast
Chromium: CVE-2023-5473 Use after free in Cast
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
118.0.2088.46
118.0.5993.70/.71
10/13/202
msrc