Msrc Microsoft Edge vulnerabilities

1,721 known vulnerabilities affecting msrc/microsoft_edge.

Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7

Vulnerabilities

Page 35 of 87
CVE-2023-4863HIGHCVSS 8.8KEV2023-09-12
CVE-2023-4863 [HIGH] Chromium: CVE-2023-4863 Heap buffer overflow in WebP Chromium: CVE-2023-4863 Heap buffer overflow in WebP Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. Google is aware that an exploit for CVE-2023-4863 exists in the wild. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in C
msrc
CVE-2023-36562HIGHCVSS 7.12023-09-12
CVE-2023-36562 [HIGH] CWE-416 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 117.0.2045.31 117.0.5938.62/.63 9/15/2023 FAQ: According to the CVSS metrics, successful exploitation of this vulnerability could lead to minor loss of confidentiality (C:L), in
msrc
CVE-2023-4905MEDIUMCVSS 4.32023-09-12
CVE-2023-4905 [MEDIUM] Chromium: CVE-2023-4905 Inappropriate implementation in Prompts Chromium: CVE-2023-4905 Inappropriate implementation in Prompts Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 117.0.2
msrc
CVE-2023-4909MEDIUMCVSS 4.32023-09-12
CVE-2023-4909 [MEDIUM] Chromium: CVE-2023-4909 Inappropriate implementation in Interstitials Chromium: CVE-2023-4909 Inappropriate implementation in Interstitials Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released St
msrc
CVE-2023-4901MEDIUMCVSS 4.32023-09-12
CVE-2023-4901 [MEDIUM] Chromium: CVE-2023-4901 Inappropriate implementation in Prompts Chromium: CVE-2023-4901 Inappropriate implementation in Prompts Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 117.0.2
msrc
CVE-2023-4907MEDIUMCVSS 4.32023-09-12
CVE-2023-4907 [MEDIUM] Chromium: CVE-2023-4907 Inappropriate implementation in Intents Chromium: CVE-2023-4907 Inappropriate implementation in Intents Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 117.0.2
msrc
CVE-2023-4908MEDIUMCVSS 4.32023-09-12
CVE-2023-4908 [MEDIUM] Chromium: CVE-2023-4908 Inappropriate implementation in Picture in Picture Chromium: CVE-2023-4908 Inappropriate implementation in Picture in Picture Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Rel
msrc
CVE-2023-4906MEDIUMCVSS 4.32023-09-12
CVE-2023-4906 [MEDIUM] Chromium: CVE-2023-4906 Insufficient policy enforcement in Autofill Chromium: CVE-2023-4906 Insufficient policy enforcement in Autofill Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable
msrc
CVE-2023-4900MEDIUMCVSS 4.32023-09-12
CVE-2023-4900 [MEDIUM] Chromium: CVE-2023-4900 Inappropriate implementation in Custom Tabs Chromium: CVE-2023-4900 Inappropriate implementation in Custom Tabs Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable
msrc
CVE-2023-4764MEDIUMCVSS 6.52023-09-12
CVE-2023-4764 [MEDIUM] Chromium: CVE-2023-4764 Incorrect security UI in BFCache Chromium: CVE-2023-4764 Incorrect security UI in BFCache Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Micr
msrc
CVE-2023-4904MEDIUMCVSS 4.32023-09-12
CVE-2023-4904 [MEDIUM] Chromium: CVE-2023-4904 Insufficient policy enforcement in Downloads Chromium: CVE-2023-4904 Insufficient policy enforcement in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stab
msrc
CVE-2023-4903MEDIUMCVSS 4.32023-09-12
CVE-2023-4903 [MEDIUM] Chromium: CVE-2023-4903 Inappropriate implementation in Custom Mobile Tabs Chromium: CVE-2023-4903 Inappropriate implementation in Custom Mobile Tabs Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Rel
msrc
CVE-2023-36727MEDIUMCVSS 6.12023-09-12
CVE-2023-36727 [MEDIUM] Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 117.0.2045.31 117.0.5938.62/.63 9/15/2023 FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do? The user would have to click on a specially crafted U
msrc
CVE-2023-4902MEDIUMCVSS 4.32023-09-12
CVE-2023-4902 [MEDIUM] Chromium: CVE-2023-4902 Inappropriate implementation in Input Chromium: CVE-2023-4902 Inappropriate implementation in Input Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 117.0.2045.
msrc
CVE-2023-1999MEDIUMCVSS 5.32023-09-12
CVE-2023-1999 [MEDIUM] Chromium: CVE-2023-1999 Use after free in libwebp Chromium: CVE-2023-1999 Use after free in libwebp Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2023-4074HIGHCVSS 8.82023-08-08
CVE-2023-4074 [HIGH] Chromium: CVE-2023-4074 Use after free in Blink Task Scheduling Chromium: CVE-2023-4074 Use after free in Blink Task Scheduling Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is cons
msrc
CVE-2023-4427HIGHCVSS 8.12023-08-08
CVE-2023-4427 [HIGH] Chromium: CVE-2023-4427: Out of bounds memory access in V8 Chromium: CVE-2023-4427: Out of bounds memory access in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Mi
msrc
CVE-2023-4353HIGHCVSS 8.82023-08-08
CVE-2023-4353 [HIGH] Chromium: CVE-2023-4353 Heap buffer overflow in ANGLE Chromium: CVE-2023-4353 Heap buffer overflow in ANGLE Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 116.0.1938.54 8/21/2023 116.0.5845.96/.97 FAQ: Why is thi
msrc
CVE-2023-4572HIGHCVSS 8.82023-08-08
CVE-2023-4572 [HIGH] Chromium: CVE-2023-4572 Use after free in MediaStream Chromium: CVE-2023-4572 Use after free in MediaStream Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 116.0.1938.69 8/31/2023 116.0.5845.140/.141 FAQ: Why is t
msrc
CVE-2023-4069HIGHCVSS 8.82023-08-08
CVE-2023-4069 [HIGH] Chromium: CVE-2023-4069 Type Confusion in V8 Chromium: CVE-2023-4069 Type Confusion in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc