Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 76 of 87
CVE-2021-21179HIGHCVSS 8.82021-03-09
CVE-2021-21179 [HIGH] Chromium CVE-2021-21179: Use after free in Network Internals
Chromium CVE-2021-21179: Use after free in Network Internals
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2021-21188HIGHCVSS 8.82021-03-09
CVE-2021-21188 [HIGH] Chromium CVE-2021-21188: Use after free in Blink
Chromium CVE-2021-21188: Use after free in Blink
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chro
msrc
CVE-2021-21193HIGHCVSS 8.8KEV2021-03-09
CVE-2021-21193 [HIGH] Chromium CVE-2021-21193: Use after free in Blink
Chromium CVE-2021-21193: Use after free in Blink
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
This CVE has been reported to be exploited in the wild.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
89.0.774.54
msrc
CVE-2021-21167HIGHCVSS 8.82021-03-09
CVE-2021-21167 [HIGH] Chromium CVE-2021-21167: Use after free in bookmarks
Chromium CVE-2021-21167: Use after free in bookmarks
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Ed
msrc
CVE-2021-21160HIGHCVSS 8.82021-03-09
CVE-2021-21160 [HIGH] Chromium CVE-2021-21160: Heap buffer overflow in WebAudio
Chromium CVE-2021-21160: Heap buffer overflow in WebAudio
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Mic
msrc
CVE-2021-21165HIGHCVSS 8.82021-03-09
CVE-2021-21165 [HIGH] Chromium CVE-2021-21165: Object lifecycle issue in audio
Chromium CVE-2021-21165: Object lifecycle issue in audio
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Micr
msrc
CVE-2021-21192HIGHCVSS 8.82021-03-09
CVE-2021-21192 [HIGH] Chromium CVE-2021-21192: Heap buffer overflow in tab groups
Chromium CVE-2021-21192: Heap buffer overflow in tab groups
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
89.0.774.54
3/13/2021
89.0.4389.90
FAQ: Why
msrc
CVE-2021-21169HIGHCVSS 8.82021-03-09
CVE-2021-21169 [HIGH] Chromium CVE-2021-21169: Out of bounds memory access in V8
Chromium CVE-2021-21169: Out of bounds memory access in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by
msrc
CVE-2021-21172HIGHCVSS 8.12021-03-09
CVE-2021-21172 [HIGH] Chromium CVE-2021-21172: Insufficient policy enforcement in File System API
Chromium CVE-2021-21172: Insufficient policy enforcement in File System API
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source So
msrc
CVE-2021-21180HIGHCVSS 8.82021-03-09
CVE-2021-21180 [HIGH] Chromium CVE-2021-21180: Use after free in tab search
Chromium CVE-2021-21180: Use after free in tab search
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc
CVE-2021-26411HIGHCVSS 8.8KEV2021-03-09
CVE-2021-26411 [HIGH] Internet Explorer Memory Corruption Vulnerability
Internet Explorer Memory Corruption Vulnerability
FAQ: How could an attacker exploit the vulnerability?
An attacker could host a specially crafted website designed to exploit the vulnerability through Internet Explorer and then convince a user to view the website. The attacker could also take advantage of compromised websites, or websites that accept or host user-provided content or advertisements, by adding specially craft
msrc
CVE-2021-21159HIGHCVSS 8.82021-03-09
CVE-2021-21159 [HIGH] Chromium CVE-2021-21159: Heap buffer overflow in TabStrip
Chromium CVE-2021-21159: Heap buffer overflow in TabStrip
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Mic
msrc
CVE-2021-21171MEDIUMCVSS 6.52021-03-09
CVE-2021-21171 [MEDIUM] Chromium CVE-2021-21171: Incorrect security UI in TabStrip and Navigation
Chromium CVE-2021-21171: Incorrect security UI in TabStrip and Navigation
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Soft
msrc
CVE-2021-21182MEDIUMCVSS 6.52021-03-09
CVE-2021-21182 [MEDIUM] Chromium CVE-2021-21182: Insufficient policy enforcement in navigations
Chromium CVE-2021-21182: Insufficient policy enforcement in navigations
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software
msrc
CVE-2021-21170MEDIUMCVSS 6.52021-03-09
CVE-2021-21170 [MEDIUM] Chromium CVE-2021-21170: Incorrect security UI in Loader
Chromium CVE-2021-21170: Incorrect security UI in Loader
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Mi
msrc
CVE-2021-21183MEDIUMCVSS 4.32021-03-09
CVE-2021-21183 [MEDIUM] Chromium CVE-2021-21183: Inappropriate implementation in performance APIs
Chromium CVE-2021-21183: Inappropriate implementation in performance APIs
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Soft
msrc
CVE-2021-21178MEDIUMCVSS 6.52021-03-09
CVE-2021-21178 [MEDIUM] Chromium CVE-2021-21178 : Inappropriate implementation in Compositing
Chromium CVE-2021-21178 : Inappropriate implementation in Compositing
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OS
msrc
CVE-2021-21163MEDIUMCVSS 6.52021-03-09
CVE-2021-21163 [MEDIUM] Chromium CVE-2021-21163: Insufficient data validation in Reader Mode
Chromium CVE-2021-21163: Insufficient data validation in Reader Mode
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS)
msrc
CVE-2021-21164MEDIUMCVSS 6.52021-03-09
CVE-2021-21164 [MEDIUM] Chromium CVE-2021-21164: Insufficient data validation in Chrome for iOS
Chromium CVE-2021-21164: Insufficient data validation in Chrome for iOS
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software
msrc
CVE-2021-21189MEDIUMCVSS 4.32021-03-09
CVE-2021-21189 [MEDIUM] Chromium CVE-2021-21189: Insufficient policy enforcement in payments
Chromium CVE-2021-21189: Insufficient policy enforcement in payments
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS)
msrc