Msrc Microsoft Edge vulnerabilities

1,721 known vulnerabilities affecting msrc/microsoft_edge.

Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7

Vulnerabilities

Page 38 of 87
CVE-2023-3727HIGHCVSS 8.82023-07-11
CVE-2023-3727 [HIGH] Chromium: CVE-2023-3727 Use after free in WebRTC Chromium: CVE-2023-3727 Use after free in WebRTC Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 115.0.1901.183 115.0.5790.98/99 7/21/20
msrc
CVE-2023-3732HIGHCVSS 8.82023-07-11
CVE-2023-3732 [HIGH] Chromium: CVE-2023-3732 Out of bounds memory access in Mojo Chromium: CVE-2023-3732 Out of bounds memory access in Mojo Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 115.0.1901.183 11
msrc
CVE-2023-3736MEDIUMCVSS 4.32023-07-11
CVE-2023-3736 [MEDIUM] Chromium: CVE-2023-3736 Inappropriate implementation in Custom Tabs Chromium: CVE-2023-3736 Inappropriate implementation in Custom Tabs Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable
msrc
CVE-2023-3733MEDIUMCVSS 4.32023-07-11
CVE-2023-3733 [MEDIUM] Chromium: CVE-2023-3733 Inappropriate implementation in WebApp Installs Chromium: CVE-2023-3733 Inappropriate implementation in WebApp Installs Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released
msrc
CVE-2023-38187MEDIUMCVSS 6.52023-07-11
CVE-2023-38187 [MEDIUM] Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 115.0.1901.183 115.0.5790.98/99 7/21/2023 Extended Stable 114.0.1901.183 114.0.5735.243 7/21/2023 FAQ: According to the CVSS metric, the attack complexity is high (AC:H). What does
msrc
CVE-2023-3735MEDIUMCVSS 4.32023-07-11
CVE-2023-3735 [MEDIUM] Chromium: CVE-2023-3735 Inappropriate implementation in Web API Permission Prompts Chromium: CVE-2023-3735 Inappropriate implementation in Web API Permission Prompts Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium
msrc
CVE-2023-3734MEDIUMCVSS 4.32023-07-11
CVE-2023-3734 [MEDIUM] Chromium: CVE-2023-3734 Inappropriate implementation in Picture In Picture Chromium: CVE-2023-3734 Inappropriate implementation in Picture In Picture Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Rel
msrc
CVE-2023-35392MEDIUMCVSS 4.72023-07-11
CVE-2023-35392 [MEDIUM] Microsoft Edge (Chromium-based) Spoofing Vulnerability Microsoft Edge (Chromium-based) Spoofing Vulnerability FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability? The vulnerability is in the web server, but the malicious scripts execute in the victim’s browser on their machine. FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user hav
msrc
CVE-2023-3737MEDIUMCVSS 4.32023-07-11
CVE-2023-3737 [MEDIUM] Chromium: CVE-2023-3737 Inappropriate implementation in Notifications Chromium: CVE-2023-3737 Inappropriate implementation in Notifications Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released St
msrc
CVE-2023-3740MEDIUMCVSS 4.32023-07-11
CVE-2023-3740 [MEDIUM] Chromium: CVE-2023-3740 Insufficient validation of untrusted input in Themes Chromium: CVE-2023-3740 Insufficient validation of untrusted input in Themes Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date
msrc
CVE-2023-3738MEDIUMCVSS 4.32023-07-11
CVE-2023-3738 [MEDIUM] Chromium: CVE-2023-3738 Inappropriate implementation in Autofill Chromium: CVE-2023-3738 Inappropriate implementation in Autofill Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 115.0
msrc
CVE-2023-3215HIGHCVSS 8.82023-06-13
CVE-2023-3215 [HIGH] Chromium: CVE-2023-3215 Use after free in WebRTC Chromium: CVE-2023-3215 Use after free in WebRTC Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromi
msrc
CVE-2023-3079HIGHCVSS 8.8KEV2023-06-13
CVE-2023-3079 [HIGH] Chromium: CVE-2023-3079 Type Confusion in V8 Chromium: CVE-2023-3079 Type Confusion in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. Google is aware that an exploit for CVE-2023-3079 exists in the wild. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Sou
msrc
CVE-2023-3421HIGHCVSS 8.82023-06-13
CVE-2023-3421 [HIGH] Chromium: CVE-2023-3421 Use after free in Media Chromium: CVE-2023-3421 Use after free in Media Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 114.0.1823.67 6/29/2023 114.0.5735.198/199 FAQ: Why is this Chrome CV
msrc
CVE-2023-3214HIGHCVSS 8.82023-06-13
CVE-2023-3214 [HIGH] Chromium: CVE-2023-3214 Use after free in Autofill payments Chromium: CVE-2023-3214 Use after free in Autofill payments Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by
msrc
CVE-2023-3217HIGHCVSS 8.82023-06-13
CVE-2023-3217 [HIGH] Chromium: CVE-2023-3217 Use after free in WebXR Chromium: CVE-2023-3217 Use after free in WebXR Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium
msrc
CVE-2023-2934HIGHCVSS 8.82023-06-13
CVE-2023-2934 [HIGH] Chromium: CVE-2023-2934 Out of bounds memory access in Mojo Chromium: CVE-2023-2934 Out of bounds memory access in Mojo Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 114.0.1823.37 6/2/2023 114.0.5735.90/91 FAQ:
msrc
CVE-2023-2939HIGHCVSS 7.82023-06-13
CVE-2023-2939 [HIGH] Chromium: CVE-2023-2939 Insufficient data validation in Installer Chromium: CVE-2023-2939 Insufficient data validation in Installer Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 114.0.1823.37 6/2/2023 114.0.5735.9
msrc
CVE-2023-2929HIGHCVSS 8.82023-06-13
CVE-2023-2929 [HIGH] Chromium: CVE-2023-2929 Out of bounds write in Swiftshader Chromium: CVE-2023-2929 Out of bounds write in Swiftshader Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 114.0.1823.37 6/2/2023 114.0.5735.90/91 FAQ: Wh
msrc
CVE-2023-2930HIGHCVSS 8.82023-06-13
CVE-2023-2930 [HIGH] Chromium: CVE-2023-2930 Use after free in Extensions Chromium: CVE-2023-2930 Use after free in Extensions Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 114.0.1823.37 6/2/2023 114.0.5735.90/91 FAQ: Why is this Ch
msrc