VYPR

Edge

by Microsoft

Source repositories

CVEs (950)

  • CVE-2026-66321HigAug 4, 2026
    risk 0.48cvss 7.4epss 0.01

    Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

  • CVE-2026-41107HigMay 12, 2026
    risk 0.48cvss 7.4epss 0.01

    External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

  • CVE-2025-21399HigJan 17, 2025
    risk 0.48cvss 7.4epss 0.01

    Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability

  • CVE-2023-36014HigNov 10, 2023
    risk 0.48cvss 7.3epss 0.01

    Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

  • CVE-2023-36034HigNov 3, 2023
    risk 0.48cvss 7.3epss 0.03

    Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

  • CVE-2016-3386HigOct 14, 2016
    risk 0.48cvss 7.5epss 0.41

    The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3389,…

  • CVE-2016-0161MedApr 12, 2016
    risk 0.48cvss 6.5epss 0.69

    Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "Microsoft Edge Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-0158.

  • CVE-2017-8652MedAug 8, 2017
    risk 0.47cvss 6.5epss 0.23

    Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from…

  • CVE-2016-3319HigAug 9, 2016
    risk 0.47cvss 7.0epss 0.19

    The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability."

  • CVE-2026-66322HigAug 4, 2026
    risk 0.46cvss 7.1epss 0.00

    Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2026-26133HigMar 16, 2026
    risk 0.46cvss 7.1epss 0.00

    AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-21223HigJan 16, 2026
    risk 0.46cvss 7.1epss 0.00

    Improper privilege management in Microsoft Edge (Chromium-based) allows an authorized attacker to bypass a security feature locally.

  • CVE-2024-30056HigMay 25, 2024
    risk 0.46cvss 7.1epss 0.02

    Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

  • CVE-2023-36027HigNov 10, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

  • CVE-2023-36024HigNov 10, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

  • CVE-2023-36562HigSep 15, 2023
    risk 0.46cvss 7.1epss 0.01

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

  • CVE-2020-0878MedKEVSep 11, 2020
    risk 0.46cvss 4.2epss 0.03

    A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory. The vulnerability could corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user. An attacker who successfully…

  • CVE-2020-1073HigJun 9, 2020
    risk 0.46cvss 8.1epss 0.09

    A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'.

  • CVE-2019-0649HigMar 5, 2019
    risk 0.46cvss 8.1epss 0.04

    A vulnerability exists in Microsoft Chakra JIT server, aka 'Scripting Engine Elevation of Privileged Vulnerability'.

  • CVE-2024-21388MedJan 30, 2024
    risk 0.45cvss 6.5epss 0.32

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

Page 23 of 48