VYPR

Edge

by Microsoft

Source repositories

CVEs (965)

  • CVE-2016-1097HigMay 11, 2016
    risk 0.49cvss 7.5epss 0.08

    Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-064.

  • CVE-2026-66321HigAug 4, 2026
    risk 0.48cvss 7.4epss 0.01

    Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

  • CVE-2026-41107HigMay 12, 2026
    risk 0.48cvss 7.4epss 0.01

    External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

  • CVE-2025-21399HigJan 17, 2025
    risk 0.48cvss 7.4epss 0.01

    Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability

  • CVE-2023-36014HigNov 10, 2023
    risk 0.48cvss 7.3epss 0.01

    Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

  • CVE-2023-36034HigNov 3, 2023
    risk 0.48cvss 7.3epss 0.03

    Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

  • CVE-2018-8133HigMay 9, 2018
    risk 0.48cvss 7.5epss 0.46

    A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-0943,…

  • CVE-2017-11870HigNov 15, 2017
    risk 0.48cvss 7.5epss 0.46

    ChakraCore and Microsoft Edge in Windows 10 1703, 1709, and Windows Server, version 1709 allows an attacker to gain the same user rights as the current user, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This…

  • CVE-2016-7189HigOct 14, 2016
    risk 0.48cvss 7.5epss 0.42

    The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code via a crafted web site, aka "Scripting Engine Remote Code Execution Vulnerability."

  • CVE-2016-3386HigOct 14, 2016
    risk 0.48cvss 7.5epss 0.36

    The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3389,…

  • CVE-2016-0161MedApr 12, 2016
    risk 0.48cvss 6.5epss 0.66

    Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "Microsoft Edge Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-0158.

  • CVE-2017-8652MedAug 8, 2017
    risk 0.47cvss 6.5epss 0.16

    Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from…

  • CVE-2016-3319HigAug 9, 2016
    risk 0.47cvss 7.0epss 0.23

    The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability."

  • CVE-2026-66322HigAug 4, 2026
    risk 0.46cvss 7.1epss 0.00

    Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2026-26133HigMar 16, 2026
    risk 0.46cvss 7.1epss 0.00

    AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-21223HigJan 16, 2026
    risk 0.46cvss 7.1epss 0.00

    Improper privilege management in Microsoft Edge (Chromium-based) allows an authorized attacker to bypass a security feature locally.

  • CVE-2024-30056HigMay 25, 2024
    risk 0.46cvss 7.1epss 0.02

    Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

  • CVE-2023-36027HigNov 10, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

  • CVE-2023-36024HigNov 10, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

  • CVE-2023-36562HigSep 15, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

Page 23 of 49