Skip to main content

Microsoft Edge vulnerabilities

622 published alerts for Microsoft Microsoft Edge.

Microsoft MSRC

CVE-2026-13950

Uninitialized Use in GPU in Microsoft Edge vulnerability

Uninitialized Use in GPU in Microsoft Edge vulnerability (CVE-2026-13950) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13948

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability (CVE-2026-13948) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13947

Uninitialized Use in XR in Microsoft Edge vulnerability

Uninitialized Use in XR in Microsoft Edge vulnerability (CVE-2026-13947) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13945

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability (CVE-2026-13945) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13942

Insufficient validation of untrusted input in Video Capture in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Video Capture in Microsoft Edge vulnerability (CVE-2026-13942) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13941

Inappropriate implementation in SiteSettings in Microsoft Edge vulnerability

Inappropriate implementation in SiteSettings in Microsoft Edge vulnerability (CVE-2026-13941) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13940

Uninitialized Use in Cast in Microsoft Edge vulnerability

Uninitialized Use in Cast in Microsoft Edge vulnerability (CVE-2026-13940) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13938

Integer overflow in Fonts in Microsoft Edge vulnerability

Integer overflow in Fonts in Microsoft Edge vulnerability (CVE-2026-13938) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13937

Insufficient policy enforcement in Passwords in Microsoft Edge vulnerability

Insufficient policy enforcement in Passwords in Microsoft Edge vulnerability (CVE-2026-13937) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13935

Side-channel information leakage in ComputePressure in Microsoft Edge vulnerability

Side-channel information leakage in ComputePressure in Microsoft Edge vulnerability (CVE-2026-13935) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13934

Insufficient validation of untrusted input in Dawn in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Dawn in Microsoft Edge vulnerability (CVE-2026-13934) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13933

Insufficient policy enforcement in Passwords in Microsoft Edge vulnerability

Insufficient policy enforcement in Passwords in Microsoft Edge vulnerability (CVE-2026-13933) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13931

Inappropriate implementation in Media in Microsoft Edge vulnerability

Inappropriate implementation in Media in Microsoft Edge vulnerability (CVE-2026-13931) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13930

Insufficient policy enforcement in Actor in Microsoft Edge vulnerability

Insufficient policy enforcement in Actor in Microsoft Edge vulnerability (CVE-2026-13930) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13928

Insufficient validation of untrusted input in Enterprise in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Enterprise in Microsoft Edge vulnerability (CVE-2026-13928) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13925

Inappropriate implementation in Downloads in Microsoft Edge vulnerability

Inappropriate implementation in Downloads in Microsoft Edge vulnerability (CVE-2026-13925) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13922

Side-channel information leakage in Paint in Microsoft Edge vulnerability

Side-channel information leakage in Paint in Microsoft Edge vulnerability (CVE-2026-13922) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13921

Insufficient validation of untrusted input in DeviceBoundSessionCredentials in Microsoft Edge vulnerability

Insufficient validation of untrusted input in DeviceBoundSessionCredentials in Microsoft Edge vulnerability (CVE-2026-13921) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13920

Insufficient validation of untrusted input in Media in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Media in Microsoft Edge vulnerability (CVE-2026-13920) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13919

Insufficient data validation in Extensions in Microsoft Edge vulnerability

Insufficient data validation in Extensions in Microsoft Edge vulnerability (CVE-2026-13919) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13911

Insufficient data validation in Spellcheck in Microsoft Edge vulnerability

Insufficient data validation in Spellcheck in Microsoft Edge vulnerability (CVE-2026-13911) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13909

Insufficient policy enforcement in DevTools in Microsoft Edge vulnerability

Insufficient policy enforcement in DevTools in Microsoft Edge vulnerability (CVE-2026-13909) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13906

Out of bounds read in Codecs in Microsoft Edge vulnerability

Out of bounds read in Codecs in Microsoft Edge vulnerability (CVE-2026-13906) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13903

Insufficient policy enforcement in Bluetooth in Microsoft Edge vulnerability

Insufficient policy enforcement in Bluetooth in Microsoft Edge vulnerability (CVE-2026-13903) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.