Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 42 of 87
CVE-2023-1534HIGHCVSS 8.82023-03-14
CVE-2023-1534 [HIGH] Chromium: CVE-2023-1534 Out of bounds read in ANGLE
Chromium: CVE-2023-1534 Out of bounds read in ANGLE
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1213HIGHCVSS 8.82023-03-14
CVE-2023-1213 [HIGH] Chromium: CVE-2023-1213 Use after free in Swiftshader
Chromium: CVE-2023-1213 Use after free in Swiftshader
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Ed
msrc
CVE-2023-1528HIGHCVSS 8.82023-03-14
CVE-2023-1528 [HIGH] Chromium: CVE-2023-1528 Use after free in Passwords
Chromium: CVE-2023-1528 Use after free in Passwords
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1216HIGHCVSS 8.82023-03-14
CVE-2023-1216 [HIGH] Chromium: CVE-2023-1216 Use after free in DevTools
Chromium: CVE-2023-1216 Use after free in DevTools
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2023-1220HIGHCVSS 8.82023-03-14
CVE-2023-1220 [HIGH] Chromium: CVE-2023-1220 Heap buffer overflow in UMA
Chromium: CVE-2023-1220 Heap buffer overflow in UMA
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1532HIGHCVSS 8.82023-03-14
CVE-2023-1532 [HIGH] Chromium: CVE-2023-1532 Out of bounds read in GPU Video
Chromium: CVE-2023-1532 Out of bounds read in GPU Video
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsof
msrc
CVE-2023-1219HIGHCVSS 8.82023-03-14
CVE-2023-1219 [HIGH] Chromium: CVE-2023-1219 Heap buffer overflow in Metrics
Chromium: CVE-2023-1219 Heap buffer overflow in Metrics
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsof
msrc
CVE-2023-1222HIGHCVSS 8.82023-03-14
CVE-2023-1222 [HIGH] Chromium: CVE-2023-1222 Heap buffer overflow in Web Audio API
Chromium: CVE-2023-1222 Heap buffer overflow in Web Audio API
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2023-1530HIGHCVSS 8.82023-03-14
CVE-2023-1530 [HIGH] Chromium: CVE-2023-1530 Use after free in PDF
Chromium: CVE-2023-1530 Use after free in PDF
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-bas
msrc
CVE-2023-24892HIGHCVSS 8.2PoC2023-03-14
CVE-2023-24892 [HIGH] Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability
Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability
FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability?
The attacker is only able to modify the content of the vulnerable link to redirect the victim to a malicious site.
FAQ: According to the CVSS metric, user interaction is required
msrc
CVE-2023-1234MEDIUMCVSS 4.32023-03-14
CVE-2023-1234 [MEDIUM] Chromium: CVE-2023-1234 Inappropriate implementation in Intents
Chromium: CVE-2023-1234 Inappropriate implementation in Intents
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is co
msrc
CVE-2023-1224MEDIUMCVSS 4.32023-03-14
CVE-2023-1224 [MEDIUM] Chromium: CVE-2023-1224 Insufficient policy enforcement in Web Payments API
Chromium: CVE-2023-1224 Insufficient policy enforcement in Web Payments API
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source So
msrc
CVE-2023-1235MEDIUMCVSS 6.32023-03-14
CVE-2023-1235 [MEDIUM] Chromium: CVE-2023-1235 Type Confusion in DevTools
Chromium: CVE-2023-1235 Type Confusion in DevTools
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1217MEDIUMCVSS 6.52023-03-14
CVE-2023-1217 [MEDIUM] Chromium: CVE-2023-1217 Stack buffer overflow in Crash reporting
Chromium: CVE-2023-1217 Stack buffer overflow in Crash reporting
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2023-1229MEDIUMCVSS 4.32023-03-14
CVE-2023-1229 [MEDIUM] Chromium: CVE-2023-1229 Inappropriate implementation in Permission prompts
Chromium: CVE-2023-1229 Inappropriate implementation in Permission prompts
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Soft
msrc
CVE-2023-1231MEDIUMCVSS 4.32023-03-14
CVE-2023-1231 [MEDIUM] Chromium: CVE-2023-1231 Inappropriate implementation in Autofill
Chromium: CVE-2023-1231 Inappropriate implementation in Autofill
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2023-1236MEDIUMCVSS 4.32023-03-14
CVE-2023-1236 [MEDIUM] Chromium: CVE-2023-1236 Inappropriate implementation in Internals
Chromium: CVE-2023-1236 Inappropriate implementation in Internals
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which i
msrc
CVE-2023-1230MEDIUMCVSS 4.32023-03-14
CVE-2023-1230 [MEDIUM] Chromium: CVE-2023-1230 Inappropriate implementation in WebApp Installs
Chromium: CVE-2023-1230 Inappropriate implementation in WebApp Installs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (
msrc
CVE-2023-28286MEDIUMCVSS 6.12023-03-14
CVE-2023-28286 [MEDIUM] Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability?
The attacker is only able to modify the content of the vulnerable link to redirect the victim to a malicious site.
FAQ: According to the CVSS metric, user interactio
msrc
CVE-2023-28261MEDIUMCVSS 5.72023-03-14
CVE-2023-28261 [MEDIUM] Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
FAQ: According to the CVSS metric, the attack complexity is high (AC:H). What does that mean for this vulnerability?
Successful exploitation of this vulnerability requires an attacker to win a race condition and also to take additional actions prior to exploitation to prepare the target environment.
FAQ: What privileges could be gaine
msrc