Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 45 of 87
CVE-2023-0141MEDIUMCVSS 4.32023-01-10
CVE-2023-0141 [MEDIUM] Chromium:CVE-2023-0141: Insufficient policy enforcement in CORS
Chromium:CVE-2023-0141: Insufficient policy enforcement in CORS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is co
msrc
CVE-2023-0131MEDIUMCVSS 6.52023-01-10
CVE-2023-0131 [MEDIUM] Chromium:CVE-2023-0131: Inappropriate implementation in iframe Sandbox
Chromium:CVE-2023-0131: Inappropriate implementation in iframe Sandbox
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OS
msrc
CVE-2023-0140MEDIUMCVSS 6.52023-01-10
CVE-2023-0140 [MEDIUM] Chromium:CVE-2023-0140: Inappropriate implementation in File System API
Chromium:CVE-2023-0140: Inappropriate implementation in File System API
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (
msrc
CVE-2023-0133MEDIUMCVSS 6.52023-01-10
CVE-2023-0133 [MEDIUM] Chromium:CVE-2023-0133: Inappropriate implementation in Permission prompts
Chromium:CVE-2023-0133: Inappropriate implementation in Permission prompts
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Soft
msrc
CVE-2022-4177HIGHCVSS 8.82022-12-13
CVE-2022-4177 [HIGH] Chromium: CVE-2022-4177 Use after free in Extensions
Chromium: CVE-2022-4177 Use after free in Extensions
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge
msrc
CVE-2022-4438HIGHCVSS 8.82022-12-13
CVE-2022-4438 [HIGH] Chromium: CVE-2022-4438 Use after free in Blink Frames
Chromium: CVE-2022-4438 Use after free in Blink Frames
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc
CVE-2022-4440HIGHCVSS 8.82022-12-13
CVE-2022-4440 [HIGH] Chromium: CVE-2022-4440 Use after free in Profiles
Chromium: CVE-2022-4440 Use after free in Profiles
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2022-4192HIGHCVSS 8.82022-12-13
CVE-2022-4192 [HIGH] Chromium: CVE-2022-4192 Use after free in Live Caption
Chromium: CVE-2022-4192 Use after free in Live Caption
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc
CVE-2022-44708HIGHCVSS 8.32022-12-13
CVE-2022-44708 [HIGH] Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
108.0.1462.41
12/5/2022
108.0.5359.94
FAQ: According to the CVSS metric, a successful exploitation could lead to a scope change (S:C). What does this mean for this vulnerability?
This vulnerability could lead to a b
msrc
CVE-2022-4179HIGHCVSS 8.82022-12-13
CVE-2022-4179 [HIGH] Chromium: CVE-2022-4179 Use after free in Audio
Chromium: CVE-2022-4179 Use after free in Audio
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium
msrc
CVE-2022-4437HIGHCVSS 8.82022-12-13
CVE-2022-4437 [HIGH] Chromium: CVE-2022-4437 Use after free in Mojo IPC
Chromium: CVE-2022-4437 Use after free in Mojo IPC
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Ch
msrc
CVE-2022-4178HIGHCVSS 8.82022-12-13
CVE-2022-4178 [HIGH] Chromium: CVE-2022-4178 Use after free in Mojo
Chromium: CVE-2022-4178 Use after free in Mojo
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2022-4174HIGHCVSS 8.82022-12-13
CVE-2022-4174 [HIGH] Chromium: CVE-2022-4174 Type Confusion in V8
Chromium: CVE-2022-4174 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based
msrc
CVE-2022-4439HIGHCVSS 8.82022-12-13
CVE-2022-4439 [HIGH] Chromium: CVE-2022-4439 Use after free in Aura
Chromium: CVE-2022-4439 Use after free in Aura
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-b
msrc
CVE-2022-4190HIGHCVSS 8.82022-12-13
CVE-2022-4190 [HIGH] Chromium: CVE-2022-4190 Insufficient data validation in Directory
Chromium: CVE-2022-4190 Insufficient data validation in Directory
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2022-4194HIGHCVSS 8.82022-12-13
CVE-2022-4194 [HIGH] Chromium: CVE-2022-4194 Use after free in Accessibility
Chromium: CVE-2022-4194 Use after free in Accessibility
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsof
msrc
CVE-2022-4191HIGHCVSS 8.82022-12-13
CVE-2022-4191 [HIGH] Chromium: CVE-2022-4191 Use after free in Sign-In
Chromium: CVE-2022-4191 Use after free in Sign-In
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chro
msrc
CVE-2022-4262HIGHCVSS 8.8KEV2022-12-13
CVE-2022-4262 [HIGH] Chromium: CVE-2022-4262 Type Confusion in V8
Chromium: CVE-2022-4262 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Google is aware that an exploit for CVE-2022-4262 exists in the wild.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Sou
msrc
CVE-2022-4436HIGHCVSS 8.82022-12-13
CVE-2022-4436 [HIGH] Chromium: CVE-2022-4436 Use after free in Blink Media
Chromium: CVE-2022-4436 Use after free in Blink Media
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Ed
msrc
CVE-2022-4181HIGHCVSS 8.82022-12-13
CVE-2022-4181 [HIGH] Chromium: CVE-2022-4181 Use after free in Forms
Chromium: CVE-2022-4181 Use after free in Forms
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium
msrc