Msrc Microsoft Edge vulnerabilities

1,721 known vulnerabilities affecting msrc/microsoft_edge.

Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7

Vulnerabilities

Page 33 of 87
CVE-2023-5852HIGHCVSS 8.82023-11-14
CVE-2023-5852 [HIGH] Chromium: CVE-2023-5852 Use after free in Printing Chromium: CVE-2023-5852 Use after free in Printing Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045.105/.106 FAQ: Why is this C
msrc
CVE-2023-5857HIGHCVSS 8.82023-11-14
CVE-2023-5857 [HIGH] Chromium: CVE-2023-5857 Inappropriate implementation in Downloads Chromium: CVE-2023-5857 Inappropriate implementation in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045
msrc
CVE-2023-5856HIGHCVSS 8.82023-11-14
CVE-2023-5856 [HIGH] Chromium: CVE-2023-5856 Use after free in Side Panel Chromium: CVE-2023-5856 Use after free in Side Panel Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045.105/.106 FAQ: Why is th
msrc
CVE-2023-5855HIGHCVSS 8.82023-11-14
CVE-2023-5855 [HIGH] Chromium: CVE-2023-5855 Use after free in Reading Mode Chromium: CVE-2023-5855 Use after free in Reading Mode Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045.105/.106 FAQ: Why i
msrc
CVE-2023-6347HIGHCVSS 8.82023-11-14
CVE-2023-6347 [HIGH] Chromium: CVE-2023-6347 Use after free in Mojo Chromium: CVE-2023-6347 Use after free in Mojo Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2023-5858MEDIUMCVSS 4.32023-11-14
CVE-2023-5858 [MEDIUM] Chromium: CVE-2023-5858 Inappropriate implementation in WebApp Provider Chromium: CVE-2023-5858 Inappropriate implementation in WebApp Provider Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2
msrc
CVE-2023-5853MEDIUMCVSS 4.32023-11-14
CVE-2023-5853 [MEDIUM] Chromium: CVE-2023-5853 Incorrect security UI in Downloads Chromium: CVE-2023-5853 Incorrect security UI in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045.105/.106
msrc
CVE-2023-36026MEDIUMCVSS 4.32023-11-14
CVE-2023-36026 [MEDIUM] Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability FAQ: Why is the severity for this CVE rated as Moderate, but the CVSS score is higher than normal? Per our severity guidelines, the amount of user interaction or preconditions required to allow this sort of exploitation downgraded the severity, specifically it says, "If a bug requires more than a click, a key press, or several preconditions, the severity will be
msrc
CVE-2023-5859MEDIUMCVSS 4.32023-11-14
CVE-2023-5859 [MEDIUM] Chromium: CVE-2023-5859 Incorrect security UI in Picture In Picture Chromium: CVE-2023-5859 Incorrect security UI in Picture In Picture Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.
msrc
CVE-2023-36022MEDIUMCVSS 6.62023-11-14
CVE-2023-36022 [MEDIUM] Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of availability (A:L)? What does that mean for this vulnerability? The performance can be interrupted and/or reduced, but the attacker cannot fully deny service. FAQ: According to the CVSS metric, the attack vector is local (AV:L). W
msrc
CVE-2023-5851MEDIUMCVSS 4.32023-11-14
CVE-2023-5851 [MEDIUM] Chromium: CVE-2023-5851 Inappropriate implementation in Downloads Chromium: CVE-2023-5851 Inappropriate implementation in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.60
msrc
CVE-2023-36008MEDIUMCVSS 6.62023-11-14
CVE-2023-36008 [MEDIUM] CWE-416 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Date Released Based on Chromium Version Stable 119.0.2151.72 11/16/2023 119.0.6045.159/.160 Extended Stable 118.0.2088.109 11/16/2023 118.0.5993.144 FAQ: According to the CVSS metric, the attack vector is local (AV:L). Why
msrc
CVE-2023-5850MEDIUMCVSS 4.32023-11-14
CVE-2023-5850 [MEDIUM] Chromium: CVE-2023-5850 Incorrect security UI in Downloads Chromium: CVE-2023-5850 Incorrect security UI in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045.105/.106
msrc
CVE-2023-5480MEDIUMCVSS 6.12023-11-14
CVE-2023-5480 [MEDIUM] Chromium: CVE-2023-5480 Inappropriate implementation in Payments Chromium: CVE-2023-5480 Inappropriate implementation in Payments Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 119.0.2151.44 11/02/2023 119.0.6045
msrc
CVE-2023-5472HIGHCVSS 8.82023-10-10
CVE-2023-5472 [HIGH] Chromium: CVE-2023-5472: Use after free in Profiles Chromium: CVE-2023-5472: Use after free in Profiles Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-5476HIGHCVSS 8.82023-10-10
CVE-2023-5476 [HIGH] Chromium: CVE-2023-5476 Use after free in Blink History Chromium: CVE-2023-5476 Use after free in Blink History Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 118.0.2088.46 118.0.5993.
msrc
CVE-2023-5346HIGHCVSS 8.82023-10-10
CVE-2023-5346 [HIGH] Chromium: CVE-2023-5346 Type Confusion in V8 Chromium: CVE-2023-5346 Type Confusion in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc
CVE-2023-5474HIGHCVSS 8.82023-10-10
CVE-2023-5474 [HIGH] Chromium: CVE-2023-5474 Heap buffer overflow in PDF Chromium: CVE-2023-5474 Heap buffer overflow in PDF Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 118.0.2088.46 118.0.5993.70/.71 1
msrc
CVE-2023-5218HIGHCVSS 8.82023-10-10
CVE-2023-5218 [HIGH] Chromium: CVE-2023-5218 Use after free in Site Isolation Chromium: CVE-2023-5218 Use after free in Site Isolation Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 118.0.2088.46 118.0.599
msrc
CVE-2023-5473MEDIUMCVSS 6.32023-10-10
CVE-2023-5473 [MEDIUM] Chromium: CVE-2023-5473 Use after free in Cast Chromium: CVE-2023-5473 Use after free in Cast Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 118.0.2088.46 118.0.5993.70/.71 10/13/202
msrc