Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 35 of 87
CVE-2023-4863HIGHCVSS 8.8KEV2023-09-12
CVE-2023-4863 [HIGH] Chromium: CVE-2023-4863 Heap buffer overflow in WebP
Chromium: CVE-2023-4863 Heap buffer overflow in WebP
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Google is aware that an exploit for CVE-2023-4863 exists in the wild.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in C
msrc
CVE-2023-36562HIGHCVSS 7.12023-09-12
CVE-2023-36562 [HIGH] CWE-416 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
117.0.2045.31
117.0.5938.62/.63
9/15/2023
FAQ: According to the CVSS metrics, successful exploitation of this vulnerability could lead to minor loss of confidentiality (C:L), in
msrc
CVE-2023-4905MEDIUMCVSS 4.32023-09-12
CVE-2023-4905 [MEDIUM] Chromium: CVE-2023-4905 Inappropriate implementation in Prompts
Chromium: CVE-2023-4905 Inappropriate implementation in Prompts
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
117.0.2
msrc
CVE-2023-4909MEDIUMCVSS 4.32023-09-12
CVE-2023-4909 [MEDIUM] Chromium: CVE-2023-4909 Inappropriate implementation in Interstitials
Chromium: CVE-2023-4909 Inappropriate implementation in Interstitials
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
St
msrc
CVE-2023-4901MEDIUMCVSS 4.32023-09-12
CVE-2023-4901 [MEDIUM] Chromium: CVE-2023-4901 Inappropriate implementation in Prompts
Chromium: CVE-2023-4901 Inappropriate implementation in Prompts
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
117.0.2
msrc
CVE-2023-4907MEDIUMCVSS 4.32023-09-12
CVE-2023-4907 [MEDIUM] Chromium: CVE-2023-4907 Inappropriate implementation in Intents
Chromium: CVE-2023-4907 Inappropriate implementation in Intents
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
117.0.2
msrc
CVE-2023-4908MEDIUMCVSS 4.32023-09-12
CVE-2023-4908 [MEDIUM] Chromium: CVE-2023-4908 Inappropriate implementation in Picture in Picture
Chromium: CVE-2023-4908 Inappropriate implementation in Picture in Picture
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Rel
msrc
CVE-2023-4906MEDIUMCVSS 4.32023-09-12
CVE-2023-4906 [MEDIUM] Chromium: CVE-2023-4906 Insufficient policy enforcement in Autofill
Chromium: CVE-2023-4906 Insufficient policy enforcement in Autofill
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
msrc
CVE-2023-4900MEDIUMCVSS 4.32023-09-12
CVE-2023-4900 [MEDIUM] Chromium: CVE-2023-4900 Inappropriate implementation in Custom Tabs
Chromium: CVE-2023-4900 Inappropriate implementation in Custom Tabs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
msrc
CVE-2023-4764MEDIUMCVSS 6.52023-09-12
CVE-2023-4764 [MEDIUM] Chromium: CVE-2023-4764 Incorrect security UI in BFCache
Chromium: CVE-2023-4764 Incorrect security UI in BFCache
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Micr
msrc
CVE-2023-4904MEDIUMCVSS 4.32023-09-12
CVE-2023-4904 [MEDIUM] Chromium: CVE-2023-4904 Insufficient policy enforcement in Downloads
Chromium: CVE-2023-4904 Insufficient policy enforcement in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stab
msrc
CVE-2023-4903MEDIUMCVSS 4.32023-09-12
CVE-2023-4903 [MEDIUM] Chromium: CVE-2023-4903 Inappropriate implementation in Custom Mobile Tabs
Chromium: CVE-2023-4903 Inappropriate implementation in Custom Mobile Tabs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Rel
msrc
CVE-2023-36727MEDIUMCVSS 6.12023-09-12
CVE-2023-36727 [MEDIUM] Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
117.0.2045.31
117.0.5938.62/.63
9/15/2023
FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
The user would have to click on a specially crafted U
msrc
CVE-2023-4902MEDIUMCVSS 4.32023-09-12
CVE-2023-4902 [MEDIUM] Chromium: CVE-2023-4902 Inappropriate implementation in Input
Chromium: CVE-2023-4902 Inappropriate implementation in Input
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
117.0.2045.
msrc
CVE-2023-1999MEDIUMCVSS 5.32023-09-12
CVE-2023-1999 [MEDIUM] Chromium: CVE-2023-1999 Use after free in libwebp
Chromium: CVE-2023-1999 Use after free in libwebp
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2023-4074HIGHCVSS 8.82023-08-08
CVE-2023-4074 [HIGH] Chromium: CVE-2023-4074 Use after free in Blink Task Scheduling
Chromium: CVE-2023-4074 Use after free in Blink Task Scheduling
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is cons
msrc
CVE-2023-4427HIGHCVSS 8.12023-08-08
CVE-2023-4427 [HIGH] Chromium: CVE-2023-4427: Out of bounds memory access in V8
Chromium: CVE-2023-4427: Out of bounds memory access in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Mi
msrc
CVE-2023-4353HIGHCVSS 8.82023-08-08
CVE-2023-4353 [HIGH] Chromium: CVE-2023-4353 Heap buffer overflow in ANGLE
Chromium: CVE-2023-4353 Heap buffer overflow in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
116.0.1938.54
8/21/2023
116.0.5845.96/.97
FAQ: Why is thi
msrc
CVE-2023-4572HIGHCVSS 8.82023-08-08
CVE-2023-4572 [HIGH] Chromium: CVE-2023-4572 Use after free in MediaStream
Chromium: CVE-2023-4572 Use after free in MediaStream
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
116.0.1938.69
8/31/2023
116.0.5845.140/.141
FAQ: Why is t
msrc
CVE-2023-4069HIGHCVSS 8.82023-08-08
CVE-2023-4069 [HIGH] Chromium: CVE-2023-4069 Type Confusion in V8
Chromium: CVE-2023-4069 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc