Skip to main content

CVE-2026-11172

Incorrect security UI in Contact Picker in Microsoft Edge vulnerability

Microsoft · Microsoft Edge

MSRC advisory June 9, 2026

Alert details

Source feed
Microsoft MSRC
CVE ID
CVE-2026-11172
Affected products
Microsoft Edge · Microsoft Microsoft Edge · Microsoft

What happened

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

What it means for your business

Incorrect security UI in Contact Picker in Microsoft Edge vulnerability (CVE-2026-11172) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

EPSS probability

0.23%

Sources

Related briefs

Microsoft MSRC

CVE-2026-19560

Use after free in Blink in Microsoft Edge vulnerability

Use after free in Blink in Microsoft Edge vulnerability (CVE-2026-19560) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19559

Use after free in HTML in Microsoft Edge vulnerability

Use after free in HTML in Microsoft Edge vulnerability (CVE-2026-19559) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19558

Use after free in Extensions in Microsoft Edge vulnerability

Use after free in Extensions in Microsoft Edge vulnerability (CVE-2026-19558) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-19557

Use after free in TabStrip in Microsoft Edge vulnerability

Use after free in TabStrip in Microsoft Edge vulnerability (CVE-2026-19557) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.