Msrc Microsoft Edge vulnerabilities

1,721 known vulnerabilities affecting msrc/microsoft_edge.

Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7

Vulnerabilities

Page 42 of 87
CVE-2023-1534HIGHCVSS 8.82023-03-14
CVE-2023-1534 [HIGH] Chromium: CVE-2023-1534 Out of bounds read in ANGLE Chromium: CVE-2023-1534 Out of bounds read in ANGLE Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1213HIGHCVSS 8.82023-03-14
CVE-2023-1213 [HIGH] Chromium: CVE-2023-1213 Use after free in Swiftshader Chromium: CVE-2023-1213 Use after free in Swiftshader Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Ed
msrc
CVE-2023-1528HIGHCVSS 8.82023-03-14
CVE-2023-1528 [HIGH] Chromium: CVE-2023-1528 Use after free in Passwords Chromium: CVE-2023-1528 Use after free in Passwords Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1216HIGHCVSS 8.82023-03-14
CVE-2023-1216 [HIGH] Chromium: CVE-2023-1216 Use after free in DevTools Chromium: CVE-2023-1216 Use after free in DevTools Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2023-1220HIGHCVSS 8.82023-03-14
CVE-2023-1220 [HIGH] Chromium: CVE-2023-1220 Heap buffer overflow in UMA Chromium: CVE-2023-1220 Heap buffer overflow in UMA Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1532HIGHCVSS 8.82023-03-14
CVE-2023-1532 [HIGH] Chromium: CVE-2023-1532 Out of bounds read in GPU Video Chromium: CVE-2023-1532 Out of bounds read in GPU Video Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsof
msrc
CVE-2023-1219HIGHCVSS 8.82023-03-14
CVE-2023-1219 [HIGH] Chromium: CVE-2023-1219 Heap buffer overflow in Metrics Chromium: CVE-2023-1219 Heap buffer overflow in Metrics Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsof
msrc
CVE-2023-1222HIGHCVSS 8.82023-03-14
CVE-2023-1222 [HIGH] Chromium: CVE-2023-1222 Heap buffer overflow in Web Audio API Chromium: CVE-2023-1222 Heap buffer overflow in Web Audio API Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2023-1530HIGHCVSS 8.82023-03-14
CVE-2023-1530 [HIGH] Chromium: CVE-2023-1530 Use after free in PDF Chromium: CVE-2023-1530 Use after free in PDF Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-bas
msrc
CVE-2023-24892HIGHCVSS 8.2PoC2023-03-14
CVE-2023-24892 [HIGH] Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability? The attacker is only able to modify the content of the vulnerable link to redirect the victim to a malicious site. FAQ: According to the CVSS metric, user interaction is required
msrc
CVE-2023-1234MEDIUMCVSS 4.32023-03-14
CVE-2023-1234 [MEDIUM] Chromium: CVE-2023-1234 Inappropriate implementation in Intents Chromium: CVE-2023-1234 Inappropriate implementation in Intents Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is co
msrc
CVE-2023-1224MEDIUMCVSS 4.32023-03-14
CVE-2023-1224 [MEDIUM] Chromium: CVE-2023-1224 Insufficient policy enforcement in Web Payments API Chromium: CVE-2023-1224 Insufficient policy enforcement in Web Payments API Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source So
msrc
CVE-2023-1235MEDIUMCVSS 6.32023-03-14
CVE-2023-1235 [MEDIUM] Chromium: CVE-2023-1235 Type Confusion in DevTools Chromium: CVE-2023-1235 Type Confusion in DevTools Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (
msrc
CVE-2023-1217MEDIUMCVSS 6.52023-03-14
CVE-2023-1217 [MEDIUM] Chromium: CVE-2023-1217 Stack buffer overflow in Crash reporting Chromium: CVE-2023-1217 Stack buffer overflow in Crash reporting Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2023-1229MEDIUMCVSS 4.32023-03-14
CVE-2023-1229 [MEDIUM] Chromium: CVE-2023-1229 Inappropriate implementation in Permission prompts Chromium: CVE-2023-1229 Inappropriate implementation in Permission prompts Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Soft
msrc
CVE-2023-1231MEDIUMCVSS 4.32023-03-14
CVE-2023-1231 [MEDIUM] Chromium: CVE-2023-1231 Inappropriate implementation in Autofill Chromium: CVE-2023-1231 Inappropriate implementation in Autofill Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2023-1236MEDIUMCVSS 4.32023-03-14
CVE-2023-1236 [MEDIUM] Chromium: CVE-2023-1236 Inappropriate implementation in Internals Chromium: CVE-2023-1236 Inappropriate implementation in Internals Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which i
msrc
CVE-2023-1230MEDIUMCVSS 4.32023-03-14
CVE-2023-1230 [MEDIUM] Chromium: CVE-2023-1230 Inappropriate implementation in WebApp Installs Chromium: CVE-2023-1230 Inappropriate implementation in WebApp Installs Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (
msrc
CVE-2023-28286MEDIUMCVSS 6.12023-03-14
CVE-2023-28286 [MEDIUM] Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability FAQ: According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability? The attacker is only able to modify the content of the vulnerable link to redirect the victim to a malicious site. FAQ: According to the CVSS metric, user interactio
msrc
CVE-2023-28261MEDIUMCVSS 5.72023-03-14
CVE-2023-28261 [MEDIUM] Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability FAQ: According to the CVSS metric, the attack complexity is high (AC:H). What does that mean for this vulnerability? Successful exploitation of this vulnerability requires an attacker to win a race condition and also to take additional actions prior to exploitation to prepare the target environment. FAQ: What privileges could be gaine
msrc