VYPR

Edge

by Microsoft

Source repositories

CVEs (950)

  • CVE-2017-8650MedAug 8, 2017
    risk 0.35cvss 5.4epss 0.01

    Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to exploit a security feature bypass due to Microsoft Edge not properly enforcing same-origin policies, aka "Microsoft Edge Security Feature Bypass Vulnerability".

  • CVE-2017-8637MedAug 8, 2017
    risk 0.35cvss 5.3epss 0.05

    Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to bypass Arbitrary Code Guard (ACG) due to how Microsoft Edge accesses memory in code compiled by the Edge Just-In-Time (JIT) compiler, aka "Scripting Engine Security Feature Bypass Vulnerability".

  • CVE-2017-8530MedJun 15, 2017
    risk 0.35cvss 5.4epss 0.02

    Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an attacker to trick a user into loading a page with malicious content when Microsoft Edge does not properly enforce same-origin policies, aka "Microsoft Edge Security Feature…

  • CVE-2017-0241MedMay 12, 2017
    risk 0.35cvss 5.3epss 0.03

    An elevation of privilege vulnerability exists when Microsoft Edge renders a domain-less page in the URL, which could allow Microsoft Edge to perform actions in the context of the Intranet Zone and access functionality that is not typically available to the browser when browsing…

  • CVE-2016-7281MedDec 20, 2016
    risk 0.35cvss 5.3epss 0.14

    The Web Workers implementation in Microsoft Internet Explorer 10 and 11 and Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "Microsoft Browser Security Feature Bypass Vulnerability."

  • CVE-2016-7209MedNov 10, 2016
    risk 0.35cvss 5.3epss 0.09

    Microsoft Edge allows remote attackers to spoof web content via a crafted web site, aka "Microsoft Edge Spoofing Vulnerability."

  • CVE-2016-3392MedOct 14, 2016
    risk 0.35cvss 5.3epss 0.10

    The Edge Content Security Policy feature in Microsoft Edge does not properly validate documents, which allows remote attackers to bypass intended access restrictions via a crafted web site, aka "Microsoft Browser Security Feature Bypass Vulnerability."

  • CVE-2016-3391MedOct 14, 2016
    risk 0.35cvss 5.3epss 0.08

    Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow context-dependent attackers to discover credentials by leveraging access to a memory dump, aka "Microsoft Browser Information Disclosure Vulnerability."

  • CVE-2024-21337MedJan 11, 2024
    risk 0.34cvss 5.2epss 0.00

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

  • CVE-2024-29991MedApr 19, 2024
    risk 0.33cvss 5.0epss 0.01

    Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

  • CVE-2021-24100MedFeb 25, 2021
    risk 0.33cvss 5.0epss 0.03

    Microsoft Edge for Android Information Disclosure Vulnerability

  • CVE-2019-1054MedJun 12, 2019
    risk 0.33cvss 5.0epss 0.02

    A security feature bypass vulnerability exists in Edge that allows for bypassing Mark of the Web Tagging (MOTW). Failing to set the MOTW means that a large number of Microsoft security technologies are bypassed. In a web-based attack scenario, an attacker could host a malicious…

  • CVE-2018-0891MedMar 14, 2018
    risk 0.32cvss 4.3epss 0.14

    ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allow…

  • CVE-2017-8644MedAug 8, 2017
    risk 0.32cvss 4.3epss 0.15

    Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from…

  • CVE-2025-47967MedSep 16, 2025
    risk 0.31cvss 4.7epss 0.00

    Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2025-53791MedSep 5, 2025
    risk 0.31cvss 4.7epss 0.00

    Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2025-29796MedApr 4, 2025
    risk 0.31cvss 4.7epss 0.01

    User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network.

  • CVE-2024-38082MedJun 20, 2024
    risk 0.31cvss 4.7epss 0.00

    Microsoft Edge (Chromium-based) Spoofing Vulnerability

  • CVE-2024-26247MedMar 22, 2024
    risk 0.31cvss 4.7epss 0.01

    Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

  • CVE-2024-26163MedMar 14, 2024
    risk 0.31cvss 4.7epss 0.02

    Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

Page 37 of 48