Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 38 of 87
CVE-2023-3727HIGHCVSS 8.82023-07-11
CVE-2023-3727 [HIGH] Chromium: CVE-2023-3727 Use after free in WebRTC
Chromium: CVE-2023-3727 Use after free in WebRTC
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
115.0.1901.183
115.0.5790.98/99
7/21/20
msrc
CVE-2023-3732HIGHCVSS 8.82023-07-11
CVE-2023-3732 [HIGH] Chromium: CVE-2023-3732 Out of bounds memory access in Mojo
Chromium: CVE-2023-3732 Out of bounds memory access in Mojo
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
115.0.1901.183
11
msrc
CVE-2023-3736MEDIUMCVSS 4.32023-07-11
CVE-2023-3736 [MEDIUM] Chromium: CVE-2023-3736 Inappropriate implementation in Custom Tabs
Chromium: CVE-2023-3736 Inappropriate implementation in Custom Tabs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
msrc
CVE-2023-3733MEDIUMCVSS 4.32023-07-11
CVE-2023-3733 [MEDIUM] Chromium: CVE-2023-3733 Inappropriate implementation in WebApp Installs
Chromium: CVE-2023-3733 Inappropriate implementation in WebApp Installs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
msrc
CVE-2023-38187MEDIUMCVSS 6.52023-07-11
CVE-2023-38187 [MEDIUM] Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
115.0.1901.183
115.0.5790.98/99
7/21/2023
Extended Stable
114.0.1901.183
114.0.5735.243
7/21/2023
FAQ: According to the CVSS metric, the attack complexity is high (AC:H). What does
msrc
CVE-2023-3735MEDIUMCVSS 4.32023-07-11
CVE-2023-3735 [MEDIUM] Chromium: CVE-2023-3735 Inappropriate implementation in Web API Permission Prompts
Chromium: CVE-2023-3735 Inappropriate implementation in Web API Permission Prompts
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium
msrc
CVE-2023-3734MEDIUMCVSS 4.32023-07-11
CVE-2023-3734 [MEDIUM] Chromium: CVE-2023-3734 Inappropriate implementation in Picture In Picture
Chromium: CVE-2023-3734 Inappropriate implementation in Picture In Picture
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Rel
msrc
CVE-2023-35392MEDIUMCVSS 4.72023-07-11
CVE-2023-35392 [MEDIUM] Microsoft Edge (Chromium-based) Spoofing Vulnerability
Microsoft Edge (Chromium-based) Spoofing Vulnerability
FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability?
The vulnerability is in the web server, but the malicious scripts execute in the victim’s browser on their machine.
FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user hav
msrc
CVE-2023-3737MEDIUMCVSS 4.32023-07-11
CVE-2023-3737 [MEDIUM] Chromium: CVE-2023-3737 Inappropriate implementation in Notifications
Chromium: CVE-2023-3737 Inappropriate implementation in Notifications
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
St
msrc
CVE-2023-3740MEDIUMCVSS 4.32023-07-11
CVE-2023-3740 [MEDIUM] Chromium: CVE-2023-3740 Insufficient validation of untrusted input in Themes
Chromium: CVE-2023-3740 Insufficient validation of untrusted input in Themes
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date
msrc
CVE-2023-3738MEDIUMCVSS 4.32023-07-11
CVE-2023-3738 [MEDIUM] Chromium: CVE-2023-3738 Inappropriate implementation in Autofill
Chromium: CVE-2023-3738 Inappropriate implementation in Autofill
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Channel
Microsoft Edge Version
Based on Chromium Version
Date Released
Stable
115.0
msrc
CVE-2023-3215HIGHCVSS 8.82023-06-13
CVE-2023-3215 [HIGH] Chromium: CVE-2023-3215 Use after free in WebRTC
Chromium: CVE-2023-3215 Use after free in WebRTC
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromi
msrc
CVE-2023-3079HIGHCVSS 8.8KEV2023-06-13
CVE-2023-3079 [HIGH] Chromium: CVE-2023-3079 Type Confusion in V8
Chromium: CVE-2023-3079 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Google is aware that an exploit for CVE-2023-3079 exists in the wild.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Sou
msrc
CVE-2023-3421HIGHCVSS 8.82023-06-13
CVE-2023-3421 [HIGH] Chromium: CVE-2023-3421 Use after free in Media
Chromium: CVE-2023-3421 Use after free in Media
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.67
6/29/2023
114.0.5735.198/199
FAQ: Why is this Chrome CV
msrc
CVE-2023-3214HIGHCVSS 8.82023-06-13
CVE-2023-3214 [HIGH] Chromium: CVE-2023-3214 Use after free in Autofill payments
Chromium: CVE-2023-3214 Use after free in Autofill payments
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by
msrc
CVE-2023-3217HIGHCVSS 8.82023-06-13
CVE-2023-3217 [HIGH] Chromium: CVE-2023-3217 Use after free in WebXR
Chromium: CVE-2023-3217 Use after free in WebXR
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium
msrc
CVE-2023-2934HIGHCVSS 8.82023-06-13
CVE-2023-2934 [HIGH] Chromium: CVE-2023-2934 Out of bounds memory access in Mojo
Chromium: CVE-2023-2934 Out of bounds memory access in Mojo
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ:
msrc
CVE-2023-2939HIGHCVSS 7.82023-06-13
CVE-2023-2939 [HIGH] Chromium: CVE-2023-2939 Insufficient data validation in Installer
Chromium: CVE-2023-2939 Insufficient data validation in Installer
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.9
msrc
CVE-2023-2929HIGHCVSS 8.82023-06-13
CVE-2023-2929 [HIGH] Chromium: CVE-2023-2929 Out of bounds write in Swiftshader
Chromium: CVE-2023-2929 Out of bounds write in Swiftshader
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Wh
msrc
CVE-2023-2930HIGHCVSS 8.82023-06-13
CVE-2023-2930 [HIGH] Chromium: CVE-2023-2930 Use after free in Extensions
Chromium: CVE-2023-2930 Use after free in Extensions
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Why is this Ch
msrc