Edge for Android
by Microsoft
CVEs (40)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-1223 | Hig | 0.58 | 8.8 | 0.08 | Jun 9, 2020 | A remote code execution vulnerability exists when Microsoft Word for Android fails to properly handle certain files.To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file.The update addresses the vulnerability by correcting… | ||
| CVE-2023-23374 | Hig | 0.54 | 8.3 | 0.01 | Feb 14, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2022-26903 | Hig | 0.51 | 7.8 | 0.03 | Apr 15, 2022 | Windows Graphics Component Remote Code Execution Vulnerability | ||
| CVE-2026-66310 | Hig | 0.50 | 7.7 | 0.00 | Aug 4, 2026 | External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally. | ||
| CVE-2026-65802 | Hig | 0.48 | 7.4 | 0.01 | Aug 4, 2026 | External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2026-0391 | Med | 0.42 | 6.5 | 0.01 | Feb 5, 2026 | User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2023-21721 | Med | 0.42 | 6.5 | 0.01 | Feb 14, 2023 | Microsoft OneNote Elevation of Privilege Vulnerability | ||
| CVE-2020-1329 | Med | 0.42 | 6.5 | 0.03 | Jun 9, 2020 | A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Microsoft Bing Search Spoofing Vulnerability'. | ||
| CVE-2023-36888 | Med | 0.41 | 6.3 | 0.01 | Jul 14, 2023 | Microsoft Edge for Android (Chromium-based) Tampering Vulnerability | ||
| CVE-2024-38208 | Med | 0.40 | 6.1 | 0.00 | Aug 22, 2024 | Microsoft Edge for Android Spoofing Vulnerability | ||
| CVE-2021-38641 | Med | 0.40 | 6.1 | 0.01 | Sep 2, 2021 | Microsoft Edge for Android Spoofing Vulnerability | ||
| CVE-2025-62224 | Med | 0.36 | 5.5 | 0.00 | Jan 7, 2026 | User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an authorized attacker to perform spoofing over a network. | ||
| CVE-2026-62828 | Med | 0.35 | 5.4 | 0.00 | Jul 28, 2026 | Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network. | ||
| CVE-2025-21253 | Med | 0.35 | 5.3 | 0.01 | Feb 6, 2025 | Microsoft Edge for IOS and Android Spoofing Vulnerability | ||
| CVE-2024-29986 | Med | 0.35 | 5.4 | 0.01 | Apr 18, 2024 | Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability | ||
| CVE-2024-21387 | Med | 0.35 | 5.3 | 0.01 | Jan 26, 2024 | Microsoft Edge for Android Spoofing Vulnerability | ||
| CVE-2021-24100 | Med | 0.33 | 5.0 | 0.03 | Feb 25, 2021 | Microsoft Edge for Android Information Disclosure Vulnerability | ||
| CVE-2025-47967 | Med | 0.31 | 4.7 | 0.00 | Sep 16, 2025 | Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. | ||
| CVE-2021-33753 | Med | 0.31 | 4.7 | 0.02 | Jul 14, 2021 | Microsoft Bing Search Spoofing Vulnerability | ||
| CVE-2021-26439 | Med | 0.30 | 4.6 | 0.03 | Sep 2, 2021 | Microsoft Edge for Android Information Disclosure Vulnerability |
- risk 0.58cvss 8.8epss 0.08
A remote code execution vulnerability exists when Microsoft Word for Android fails to properly handle certain files.To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted URL file.The update addresses the vulnerability by correcting…
- risk 0.54cvss 8.3epss 0.01
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.03
Windows Graphics Component Remote Code Execution Vulnerability
- risk 0.50cvss 7.7epss 0.00
External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.
- risk 0.48cvss 7.4epss 0.01
External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.
- risk 0.42cvss 6.5epss 0.01
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
- risk 0.42cvss 6.5epss 0.01
Microsoft OneNote Elevation of Privilege Vulnerability
- risk 0.42cvss 6.5epss 0.03
A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Microsoft Bing Search Spoofing Vulnerability'.
- risk 0.41cvss 6.3epss 0.01
Microsoft Edge for Android (Chromium-based) Tampering Vulnerability
- risk 0.40cvss 6.1epss 0.00
Microsoft Edge for Android Spoofing Vulnerability
- risk 0.40cvss 6.1epss 0.01
Microsoft Edge for Android Spoofing Vulnerability
- risk 0.36cvss 5.5epss 0.00
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an authorized attacker to perform spoofing over a network.
- risk 0.35cvss 5.4epss 0.00
Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network.
- risk 0.35cvss 5.3epss 0.01
Microsoft Edge for IOS and Android Spoofing Vulnerability
- risk 0.35cvss 5.4epss 0.01
Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability
- risk 0.35cvss 5.3epss 0.01
Microsoft Edge for Android Spoofing Vulnerability
- risk 0.33cvss 5.0epss 0.03
Microsoft Edge for Android Information Disclosure Vulnerability
- risk 0.31cvss 4.7epss 0.00
Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
- risk 0.31cvss 4.7epss 0.02
Microsoft Bing Search Spoofing Vulnerability
- risk 0.30cvss 4.6epss 0.03
Microsoft Edge for Android Information Disclosure Vulnerability
Page 1 of 2