Chromium-based Edge
by Microsoft
CVEs (26)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-30127 | Hig | 0.54 | 8.3 | 0.02 | Jun 1, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | ||
| CVE-2024-38209 | Hig | 0.51 | 7.8 | 0.01 | Aug 22, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2025-21399 | Hig | 0.48 | 7.4 | 0.01 | Jan 17, 2025 | Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability | ||
| CVE-2023-36034 | Hig | 0.48 | 7.3 | 0.03 | Nov 3, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2023-36027 | Hig | 0.46 | 7.1 | 0.01 | Nov 10, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | ||
| CVE-2023-33145 | Med | 0.46 | 6.5 | 0.09 | Jun 14, 2023 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | ||
| CVE-2024-30055 | Med | 0.35 | 5.4 | 0.01 | May 14, 2024 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | ||
| CVE-2022-41035 | Med | 0.35 | 5.3 | 0.01 | Oct 11, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | ||
| CVE-2026-57990 | Hig | 0.00 | 7.4 | 0.01 | Jul 26, 2026 | Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57978 | Med | 0.00 | 5.4 | 0.00 | Jul 26, 2026 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2026-57980 | Med | 0.00 | 5.4 | 0.00 | Jul 17, 2026 | Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network. | ||
| CVE-2026-58278 | Med | 0.00 | 5.4 | 0.00 | Jul 3, 2026 | Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2026-58276 | Hig | 0.00 | 7.5 | 0.00 | Jul 3, 2026 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-57992 | Hig | 0.00 | 7.5 | 0.01 | Jul 3, 2026 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-57991 | Hig | 0.00 | 7.4 | 0.01 | Jul 3, 2026 | Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-57988 | Hig | 0.00 | 7.1 | 0.01 | Jul 3, 2026 | Relative path traversal in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-57987 | Med | 0.00 | 6.5 | 0.01 | Jul 3, 2026 | Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2026-57986 | Hig | 0.00 | 7.5 | 0.00 | Jul 3, 2026 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-57985 | Hig | 0.00 | 7.6 | 0.00 | Jul 3, 2026 | Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-57984 | Hig | 0.00 | 7.5 | 0.00 | Jul 3, 2026 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. |
- risk 0.54cvss 8.3epss 0.02
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.48cvss 7.4epss 0.01
Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability
- risk 0.48cvss 7.3epss 0.03
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.46cvss 7.1epss 0.01
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
- risk 0.46cvss 6.5epss 0.09
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
- risk 0.35cvss 5.4epss 0.01
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- risk 0.35cvss 5.3epss 0.01
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- risk 0.00cvss 7.4epss 0.01
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 5.4epss 0.00
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
- risk 0.00cvss 5.4epss 0.00
Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network.
- risk 0.00cvss 5.4epss 0.00
Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
- risk 0.00cvss 7.5epss 0.00
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.5epss 0.01
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.4epss 0.01
Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
- risk 0.00cvss 7.1epss 0.01
Relative path traversal in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 6.5epss 0.01
Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
- risk 0.00cvss 7.5epss 0.00
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.6epss 0.00
Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.5epss 0.00
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Page 1 of 2