Msrc Microsoft Edge vulnerabilities

1,721 known vulnerabilities affecting msrc/microsoft_edge.

Total CVEs
1,721
CISA KEV
58
actively exploited
Public exploits
16
Exploited in wild
48
Severity breakdown
CRITICAL66HIGH965MEDIUM659LOW24UNKNOWN7

Vulnerabilities

Page 8 of 87
CVE-2025-13634MEDIUMCVSS 4.42025-12-09
CVE-2025-13634 [MEDIUM] Chromium: CVE-2025-13634 Inappropriate implementation in Downloads Chromium: CVE-2025-13634 Inappropriate implementation in Downloads Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) whic
msrc
CVE-2025-62223MEDIUMCVSS 4.32025-12-09
CVE-2025-62223 [MEDIUM] CWE-451 Microsoft Edge (Chromium-based) for Mac Spoofing Vulnerability Microsoft Edge (Chromium-based) for Mac Spoofing Vulnerability Description: User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network. FAQ: According to the CVSS metrics, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability? T
msrc
CVE-2025-14373MEDIUMCVSS 4.32025-12-09
CVE-2025-14373 [MEDIUM] Chromium: CVE-2025-14373 Inappropriate implementation in Toolbar Chromium: CVE-2025-14373 Inappropriate implementation in Toolbar Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2025-13632MEDIUMCVSS 5.42025-12-09
CVE-2025-13632 [MEDIUM] Chromium: CVE-2025-13632 Inappropriate implementation in DevTools Chromium: CVE-2025-13632 Inappropriate implementation in DevTools Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which
msrc
CVE-2025-14372MEDIUMCVSS 6.12025-12-09
CVE-2025-14372 [MEDIUM] Chromium: CVE-2025-14372 Use after free in Password Manager Chromium: CVE-2025-14372 Use after free in Password Manager Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed
msrc
CVE-2025-13640LOWCVSS 3.52025-12-09
CVE-2025-13640 [LOW] Chromium: CVE-2025-13640 Inappropriate implementation in Passwords Chromium: CVE-2025-13640 Inappropriate implementation in Passwords Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which i
msrc
CVE-2025-12727HIGHCVSS 8.82025-11-11
CVE-2025-12727 [HIGH] Chromium: CVE-2025-12727 Inappropriate implementation in V8 Chromium: CVE-2025-12727 Inappropriate implementation in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by
msrc
CVE-2025-13224HIGHCVSS 8.82025-11-11
CVE-2025-13224 [HIGH] Chromium: CVE-2025-13224 Type Confusion in V8 Chromium: CVE-2025-13224 Type Confusion in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 142.0.3595.90 11/18/2025 142.0.7444.176 FAQ: Why is this Chrome CVE incl
msrc
CVE-2025-12726HIGHCVSS 7.52025-11-11
CVE-2025-12726 [HIGH] Chromium: CVE-2025-12726 Inappropriate implementation in Views. Chromium: CVE-2025-12726 Inappropriate implementation in Views. Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is con
msrc
CVE-2025-12725HIGHCVSS 8.82025-11-11
CVE-2025-12725 [HIGH] Chromium: CVE-2025-12725 Out of bounds write in WebGPU Chromium: CVE-2025-12725 Out of bounds write in WebGPU Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc
CVE-2025-13223HIGHCVSS 8.8KEV2025-11-11
CVE-2025-13223 [HIGH] Chromium: CVE-2025-13223 Type Confusion in V8 Chromium: CVE-2025-13223 Type Confusion in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. Google is aware that an exploit for CVE-2025-13223 exists in the wild. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 142
msrc
CVE-2025-13042HIGHCVSS 8.82025-11-11
CVE-2025-13042 [HIGH] Chromium: CVE-2025-13042 Inappropriate implementation in V8 Chromium: CVE-2025-13042 Inappropriate implementation in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 142.0.3595.80 11/13/2025 142.0.7444.162/.163
msrc
CVE-2025-12729MEDIUMCVSS 4.22025-11-11
CVE-2025-12729 [MEDIUM] Chromium: CVE-2025-12729 Inappropriate implementation in Omnibox Chromium: CVE-2025-12729 Inappropriate implementation in Omnibox Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2025-12728MEDIUMCVSS 4.22025-11-11
CVE-2025-12728 [MEDIUM] Chromium: CVE-2025-12728 Inappropriate implementation in Omnibox Chromium: CVE-2025-12728 Inappropriate implementation in Omnibox Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is
msrc
CVE-2025-11458HIGHCVSS 8.12025-10-14
CVE-2025-11458 [HIGH] Chromium: CVE-2025-11458 Heap buffer overflow in Sync Chromium: CVE-2025-11458 Heap buffer overflow in Sync Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft E
msrc
CVE-2025-12036HIGHCVSS 8.82025-10-14
CVE-2025-12036 [HIGH] Chromium: CVE-2025-12036 Inappropriate implementation in V8 Chromium: CVE-2025-12036 Inappropriate implementation in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 142.0.3595.53 10/31/2025 142.0.7445.59/.60 F
msrc
CVE-2025-12429HIGHCVSS 8.82025-10-14
CVE-2025-12429 [HIGH] Chromium: CVE-2025-12429 Inappropriate implementation in V8 Chromium: CVE-2025-12429 Inappropriate implementation in V8 Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 142.0.3595.53 10/31/2025 142.0.7445.59/.60 F
msrc
CVE-2025-12437HIGHCVSS 7.52025-10-14
CVE-2025-12437 [HIGH] Chromium: CVE-2025-12437 Use after free in PageInfo Chromium: CVE-2025-12437 Use after free in PageInfo Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: What is the version information for this release? Microsoft Edge Version Date Released Based on Chromium Version 142.0.3595.53 10/31/2025 142.0.7445.59/.60 FAQ: Why is this
msrc
CVE-2025-11211HIGHCVSS 7.52025-10-14
CVE-2025-11211 [HIGH] Chromium: CVE-2025-11211 Out of bounds read in Media Chromium: CVE-2025-11211 Out of bounds read in Media Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edg
msrc
CVE-2025-11206HIGHCVSS 7.12025-10-14
CVE-2025-11206 [HIGH] Chromium: CVE-2025-11206 Heap buffer overflow in Video Chromium: CVE-2025-11206 Heap buffer overflow in Video Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. FAQ: Why is this Chrome CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft
msrc