Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 39 of 87
CVE-2023-2936HIGHCVSS 8.82023-06-13
CVE-2023-2936 [HIGH] Chromium: CVE-2023-2936 Type Confusion in V8
Chromium: CVE-2023-2936 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Why is this Chrome CVE include
msrc
CVE-2023-3216HIGHCVSS 8.82023-06-13
CVE-2023-3216 [HIGH] Chromium: CVE-2023-3216 Type Confusion in V8
Chromium: CVE-2023-3216 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc
CVE-2023-2933HIGHCVSS 8.82023-06-13
CVE-2023-2933 [HIGH] Chromium: CVE-2023-2933 Use after free in PDF
Chromium: CVE-2023-2933 Use after free in PDF
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Why is this Chrome CVE inclu
msrc
CVE-2023-3420HIGHCVSS 8.82023-06-13
CVE-2023-3420 [HIGH] Chromium: CVE-2023-3420 Type Confusion in V8
Chromium: CVE-2023-3420 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.67
6/29/2023
114.0.5735.198/199
FAQ: Why is this Chrome CVE incl
msrc
CVE-2023-2932HIGHCVSS 8.82023-06-13
CVE-2023-2932 [HIGH] Chromium: CVE-2023-2932 Use after free in PDF
Chromium: CVE-2023-2932 Use after free in PDF
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Why is this Chrome CVE inclu
msrc
CVE-2023-33143HIGHCVSS 7.52023-06-13
CVE-2023-33143 [HIGH] Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability?
This vulnerability could lead to a
msrc
CVE-2023-3422HIGHCVSS 8.82023-06-13
CVE-2023-3422 [HIGH] Chromium: CVE-2023-3422 Use after free in Guest View
Chromium: CVE-2023-3422 Use after free in Guest View
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.67
6/29/2023
114.0.5735.198/199
FAQ: Why is this
msrc
CVE-2023-2935HIGHCVSS 8.82023-06-13
CVE-2023-2935 [HIGH] Chromium: CVE-2023-2935 Type Confusion in V8
Chromium: CVE-2023-2935 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Why is this Chrome CVE include
msrc
CVE-2023-2931HIGHCVSS 8.82023-06-13
CVE-2023-2931 [HIGH] Chromium: CVE-2023-2931 Use after free in PDF
Chromium: CVE-2023-2931 Use after free in PDF
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735.90/91
FAQ: Why is this Chrome CVE inclu
msrc
CVE-2023-2941MEDIUMCVSS 4.32023-06-13
CVE-2023-2941 [MEDIUM] Chromium: CVE-2023-2941 Inappropriate implementation in Extensions API
Chromium: CVE-2023-2941 Inappropriate implementation in Extensions API
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
msrc
CVE-2023-2937MEDIUMCVSS 4.32023-06-13
CVE-2023-2937 [MEDIUM] Chromium: CVE-2023-2937 Inappropriate implementation in Picture In Picture
Chromium: CVE-2023-2937 Inappropriate implementation in Picture In Picture
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6
msrc
CVE-2023-33145MEDIUMCVSS 6.5PoC2023-06-13
CVE-2023-33145 [MEDIUM] Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is data inside the targeted website like IDs, tokens, cryptographic nonces, and other sensitive information.
FAQ: According to the CVSS metric, user interactio
msrc
CVE-2023-29345MEDIUMCVSS 6.12023-06-13
CVE-2023-29345 [MEDIUM] Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
FAQ: According to the CVSS metric, user interaction is required (UI:R). What interaction would the user have to do?
The user would have to click on a specially crafted URL to be compromised by the attacker.
FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this v
msrc
CVE-2023-2938MEDIUMCVSS 4.32023-06-13
CVE-2023-2938 [MEDIUM] Chromium: CVE-2023-2938 Inappropriate implementation in Picture In Picture
Chromium: CVE-2023-2938 Inappropriate implementation in Picture In Picture
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6
msrc
CVE-2023-2940MEDIUMCVSS 6.52023-06-13
CVE-2023-2940 [MEDIUM] Chromium: CVE-2023-2940 Inappropriate implementation in Downloads
Chromium: CVE-2023-2940 Inappropriate implementation in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
114.0.1823.37
6/2/2023
114.0.5735
msrc
CVE-2023-2725HIGHCVSS 8.82023-05-09
CVE-2023-2725 [HIGH] Chromium: CVE-2023-2725 Use after free in Guest View
Chromium: CVE-2023-2725 Use after free in Guest View
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge
msrc
CVE-2023-2724HIGHCVSS 8.82023-05-09
CVE-2023-2724 [HIGH] Chromium: CVE-2023-2724 Type Confusion in V8
Chromium: CVE-2023-2724 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc
CVE-2023-2460HIGHCVSS 7.12023-05-09
CVE-2023-2460 [HIGH] Chromium: CVE-2023-2460 Insufficient validation of untrusted input in Extensions
Chromium: CVE-2023-2460 Insufficient validation of untrusted input in Extensions
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open S
msrc
CVE-2023-2721HIGHCVSS 8.82023-05-09
CVE-2023-2721 [HIGH] Chromium: CVE-2023-2721 Use after free in Navigation
Chromium: CVE-2023-2721 Use after free in Navigation
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge
msrc
CVE-2023-2722HIGHCVSS 8.82023-05-09
CVE-2023-2722 [HIGH] Chromium: CVE-2023-2722 Use after free in Autofill UI
Chromium: CVE-2023-2722 Use after free in Autofill UI
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Ed
msrc