Edge
by Microsoft
Source repositories
CVEs (965)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-36883 | Med | 0.28 | 4.3 | 0.01 | Jul 14, 2023 | Microsoft Edge for iOS Spoofing Vulnerability | ||
| CVE-2021-42307 | Med | 0.28 | 4.3 | 0.01 | Jul 1, 2023 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | ||
| CVE-2023-29334 | Med | 0.28 | 4.3 | 0.01 | Apr 28, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | ||
| CVE-2023-28284 | Med | 0.28 | 4.3 | 0.01 | Apr 11, 2023 | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability | ||
| CVE-2022-44688 | Med | 0.28 | 4.3 | 0.01 | Dec 13, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | ||
| CVE-2022-26905 | Med | 0.28 | 4.3 | 0.02 | Jun 1, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | ||
| CVE-2022-24523 | Med | 0.28 | 4.3 | 0.01 | Apr 5, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | ||
| CVE-2022-23258 | Med | 0.28 | 4.3 | 0.02 | Jan 25, 2022 | Microsoft Edge for Android Spoofing Vulnerability | ||
| CVE-2021-41351 | Med | 0.28 | 4.3 | 0.04 | Nov 10, 2021 | Microsoft Edge (Chrome based) Spoofing on IE Mode | ||
| CVE-2020-17153 | Med | 0.28 | 4.3 | 0.02 | Dec 10, 2020 | Microsoft Edge for Android Spoofing Vulnerability | ||
| CVE-2020-1462 | Med | 0.28 | 4.3 | 0.04 | Jul 14, 2020 | An information disclosure vulnerability exists when Skype for Business is accessed via Microsoft Edge (EdgeHTML-based), aka 'Skype for Business via Microsoft Edge (EdgeHTML-based) Information Disclosure Vulnerability'. | ||
| CVE-2020-1096 | Med | 0.28 | 4.2 | 0.02 | May 21, 2020 | A remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory. The vulnerability could corrupt memory in such a way that enables an attacker to execute arbitrary code in the context of the current user. An attacker who… | ||
| CVE-2020-1059 | Med | 0.28 | 4.3 | 0.02 | May 21, 2020 | A spoofing vulnerability exists when Microsoft Edge does not properly parse HTTP content. An attacker who successfully exploited this vulnerability could trick a user by redirecting the user to a specially crafted website. The specially crafted website could either spoof content… | ||
| CVE-2020-0706 | Med | 0.28 | 4.3 | 0.05 | Feb 11, 2020 | An information disclosure vulnerability exists in the way that affected Microsoft browsers handle cross-origin requests, aka 'Microsoft Browser Information Disclosure Vulnerability'. | ||
| CVE-2019-1413 | Med | 0.28 | 4.3 | 0.01 | Nov 12, 2019 | A security feature bypass vulnerability exists when Microsoft Edge improperly handles extension requests and fails to request host permission for all_urls, aka 'Microsoft Edge Security Feature Bypass Vulnerability'. | ||
| CVE-2019-1357 | Med | 0.28 | 4.3 | 0.02 | Oct 10, 2019 | A spoofing vulnerability exists when Microsoft Browsers improperly handle browser cookies, aka 'Microsoft Browser Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0608. | ||
| CVE-2019-0608 | Med | 0.28 | 4.3 | 0.02 | Oct 10, 2019 | A spoofing vulnerability exists when Microsoft Browsers does not properly parse HTTP content, aka 'Microsoft Browser Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1357. | ||
| CVE-2019-1220 | Med | 0.28 | 4.3 | 0.04 | Sep 11, 2019 | A security feature bypass vulnerability exists when Microsoft Browsers fail to validate the correct Security Zone of requests for specific URLs, aka 'Microsoft Browser Security Feature Bypass Vulnerability'. | ||
| CVE-2019-1192 | Med | 0.28 | 4.3 | 0.04 | Aug 14, 2019 | A security feature bypass vulnerability exists when Microsoft browsers improperly handle requests of different origins. The vulnerability allows Microsoft browsers to bypass Same-Origin Policy (SOP) restrictions, and to allow requests that should otherwise be ignored. An… | ||
| CVE-2019-1030 | Med | 0.28 | 4.3 | 0.06 | Aug 14, 2019 | An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. To exploit the vulnerability,… |
- risk 0.28cvss 4.3epss 0.01
Microsoft Edge for iOS Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.01
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
- risk 0.28cvss 4.3epss 0.01
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.01
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
- risk 0.28cvss 4.3epss 0.01
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.02
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.01
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.02
Microsoft Edge for Android Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.04
Microsoft Edge (Chrome based) Spoofing on IE Mode
- risk 0.28cvss 4.3epss 0.02
Microsoft Edge for Android Spoofing Vulnerability
- risk 0.28cvss 4.3epss 0.04
An information disclosure vulnerability exists when Skype for Business is accessed via Microsoft Edge (EdgeHTML-based), aka 'Skype for Business via Microsoft Edge (EdgeHTML-based) Information Disclosure Vulnerability'.
- risk 0.28cvss 4.2epss 0.02
A remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory. The vulnerability could corrupt memory in such a way that enables an attacker to execute arbitrary code in the context of the current user. An attacker who…
- risk 0.28cvss 4.3epss 0.02
A spoofing vulnerability exists when Microsoft Edge does not properly parse HTTP content. An attacker who successfully exploited this vulnerability could trick a user by redirecting the user to a specially crafted website. The specially crafted website could either spoof content…
- risk 0.28cvss 4.3epss 0.05
An information disclosure vulnerability exists in the way that affected Microsoft browsers handle cross-origin requests, aka 'Microsoft Browser Information Disclosure Vulnerability'.
- risk 0.28cvss 4.3epss 0.01
A security feature bypass vulnerability exists when Microsoft Edge improperly handles extension requests and fails to request host permission for all_urls, aka 'Microsoft Edge Security Feature Bypass Vulnerability'.
- risk 0.28cvss 4.3epss 0.02
A spoofing vulnerability exists when Microsoft Browsers improperly handle browser cookies, aka 'Microsoft Browser Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-0608.
- risk 0.28cvss 4.3epss 0.02
A spoofing vulnerability exists when Microsoft Browsers does not properly parse HTTP content, aka 'Microsoft Browser Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1357.
- risk 0.28cvss 4.3epss 0.04
A security feature bypass vulnerability exists when Microsoft Browsers fail to validate the correct Security Zone of requests for specific URLs, aka 'Microsoft Browser Security Feature Bypass Vulnerability'.
- risk 0.28cvss 4.3epss 0.04
A security feature bypass vulnerability exists when Microsoft browsers improperly handle requests of different origins. The vulnerability allows Microsoft browsers to bypass Same-Origin Policy (SOP) restrictions, and to allow requests that should otherwise be ignored. An…
- risk 0.28cvss 4.3epss 0.06
An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. To exploit the vulnerability,…
Page 41 of 49