Msrc Microsoft Edge vulnerabilities
1,721 known vulnerabilities affecting msrc/microsoft_edge.
Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7
Vulnerabilities
Page 8 of 87
CVE-2025-13634MEDIUMCVSS 4.42025-12-09
CVE-2025-13634 [MEDIUM] Chromium: CVE-2025-13634 Inappropriate implementation in Downloads
Chromium: CVE-2025-13634 Inappropriate implementation in Downloads
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) whic
msrc
CVE-2025-62223MEDIUMCVSS 4.32025-12-09
CVE-2025-62223 [MEDIUM] CWE-451 Microsoft Edge (Chromium-based) for Mac Spoofing Vulnerability
Microsoft Edge (Chromium-based) for Mac Spoofing Vulnerability
Description: User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network.
FAQ: According to the CVSS metrics, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability?
T
msrc
CVE-2025-14373MEDIUMCVSS 4.32025-12-09
CVE-2025-14373 [MEDIUM] Chromium: CVE-2025-14373 Inappropriate implementation in Toolbar
Chromium: CVE-2025-14373 Inappropriate implementation in Toolbar
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2025-13632MEDIUMCVSS 5.42025-12-09
CVE-2025-13632 [MEDIUM] Chromium: CVE-2025-13632 Inappropriate implementation in DevTools
Chromium: CVE-2025-13632 Inappropriate implementation in DevTools
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which
msrc
CVE-2025-14372MEDIUMCVSS 6.12025-12-09
CVE-2025-14372 [MEDIUM] Chromium: CVE-2025-14372 Use after free in Password Manager
Chromium: CVE-2025-14372 Use after free in Password Manager
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2025-13640LOWCVSS 3.52025-12-09
CVE-2025-13640 [LOW] Chromium: CVE-2025-13640 Inappropriate implementation in Passwords
Chromium: CVE-2025-13640 Inappropriate implementation in Passwords
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which i
msrc
CVE-2025-12727HIGHCVSS 8.82025-11-11
CVE-2025-12727 [HIGH] Chromium: CVE-2025-12727 Inappropriate implementation in V8
Chromium: CVE-2025-12727 Inappropriate implementation in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by
msrc
CVE-2025-13224HIGHCVSS 8.82025-11-11
CVE-2025-13224 [HIGH] Chromium: CVE-2025-13224 Type Confusion in V8
Chromium: CVE-2025-13224 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
142.0.3595.90
11/18/2025
142.0.7444.176
FAQ: Why is this Chrome CVE incl
msrc
CVE-2025-12726HIGHCVSS 7.52025-11-11
CVE-2025-12726 [HIGH] Chromium: CVE-2025-12726 Inappropriate implementation in Views.
Chromium: CVE-2025-12726 Inappropriate implementation in Views.
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is con
msrc
CVE-2025-12725HIGHCVSS 8.82025-11-11
CVE-2025-12725 [HIGH] Chromium: CVE-2025-12725 Out of bounds write in WebGPU
Chromium: CVE-2025-12725 Out of bounds write in WebGPU
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc
CVE-2025-13223HIGHCVSS 8.8KEV2025-11-11
CVE-2025-13223 [HIGH] Chromium: CVE-2025-13223 Type Confusion in V8
Chromium: CVE-2025-13223 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. Google is aware that an exploit for CVE-2025-13223 exists in the wild.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
142
msrc
CVE-2025-13042HIGHCVSS 8.82025-11-11
CVE-2025-13042 [HIGH] Chromium: CVE-2025-13042 Inappropriate implementation in V8
Chromium: CVE-2025-13042 Inappropriate implementation in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
142.0.3595.80
11/13/2025
142.0.7444.162/.163
msrc
CVE-2025-12729MEDIUMCVSS 4.22025-11-11
CVE-2025-12729 [MEDIUM] Chromium: CVE-2025-12729 Inappropriate implementation in Omnibox
Chromium: CVE-2025-12729 Inappropriate implementation in Omnibox
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2025-12728MEDIUMCVSS 4.22025-11-11
CVE-2025-12728 [MEDIUM] Chromium: CVE-2025-12728 Inappropriate implementation in Omnibox
Chromium: CVE-2025-12728 Inappropriate implementation in Omnibox
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2025-11458HIGHCVSS 8.12025-10-14
CVE-2025-11458 [HIGH] Chromium: CVE-2025-11458 Heap buffer overflow in Sync
Chromium: CVE-2025-11458 Heap buffer overflow in Sync
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft E
msrc
CVE-2025-12036HIGHCVSS 8.82025-10-14
CVE-2025-12036 [HIGH] Chromium: CVE-2025-12036 Inappropriate implementation in V8
Chromium: CVE-2025-12036 Inappropriate implementation in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
142.0.3595.53
10/31/2025
142.0.7445.59/.60
F
msrc
CVE-2025-12429HIGHCVSS 8.82025-10-14
CVE-2025-12429 [HIGH] Chromium: CVE-2025-12429 Inappropriate implementation in V8
Chromium: CVE-2025-12429 Inappropriate implementation in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
142.0.3595.53
10/31/2025
142.0.7445.59/.60
F
msrc
CVE-2025-12437HIGHCVSS 7.52025-10-14
CVE-2025-12437 [HIGH] Chromium: CVE-2025-12437 Use after free in PageInfo
Chromium: CVE-2025-12437 Use after free in PageInfo
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: What is the version information for this release?
Microsoft Edge Version
Date Released
Based on Chromium Version
142.0.3595.53
10/31/2025
142.0.7445.59/.60
FAQ: Why is this
msrc
CVE-2025-11211HIGHCVSS 7.52025-10-14
CVE-2025-11211 [HIGH] Chromium: CVE-2025-11211 Out of bounds read in Media
Chromium: CVE-2025-11211 Out of bounds read in Media
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edg
msrc
CVE-2025-11206HIGHCVSS 7.12025-10-14
CVE-2025-11206 [HIGH] Chromium: CVE-2025-11206 Heap buffer overflow in Video
Chromium: CVE-2025-11206 Heap buffer overflow in Video
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc