Skip to main content

Microsoft Edge vulnerabilities

622 published alerts for Microsoft Microsoft Edge.

Microsoft MSRC

CVE-2026-13025

Insufficient validation of untrusted input in DevTools in Microsoft Edge vulnerability

Insufficient validation of untrusted input in DevTools in Microsoft Edge vulnerability (CVE-2026-13025) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13024

Insufficient validation of untrusted input in Navigation in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Navigation in Microsoft Edge vulnerability (CVE-2026-13024) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13023

Uninitialized Use in GPU in Microsoft Edge vulnerability

Uninitialized Use in GPU in Microsoft Edge vulnerability (CVE-2026-13023) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13022

Inappropriate implementation in Autofill in Microsoft Edge vulnerability

Inappropriate implementation in Autofill in Microsoft Edge vulnerability (CVE-2026-13022) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-13021

Inappropriate implementation in DeviceBoundSessionCredentials in Microsoft Edge vulnerability

Inappropriate implementation in DeviceBoundSessionCredentials in Microsoft Edge vulnerability (CVE-2026-13021) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12468

Inappropriate implementation in Updater in Microsoft Edge vulnerability

Inappropriate implementation in Updater in Microsoft Edge vulnerability (CVE-2026-12468) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12467

Use after free in Extensions in Microsoft Edge vulnerability

Use after free in Extensions in Microsoft Edge vulnerability (CVE-2026-12467) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12466

Heap buffer overflow in WebRTC in Microsoft Edge vulnerability

Heap buffer overflow in WebRTC in Microsoft Edge vulnerability (CVE-2026-12466) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12465

Insufficient validation of untrusted input in Metrics in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Metrics in Microsoft Edge vulnerability (CVE-2026-12465) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

HighMicrosoft MSRC

CVE-2026-12464

Use after free in Browser in Microsoft Edge vulnerability

Use after free in Browser in Microsoft Edge vulnerability (CVE-2026-12464) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

MediumMicrosoft MSRC

CVE-2026-12463

Inappropriate implementation in Views in Microsoft Edge vulnerability

Inappropriate implementation in Views in Microsoft Edge vulnerability (CVE-2026-12463) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12462

Use after free in Media in Microsoft Edge vulnerability

Use after free in Media in Microsoft Edge vulnerability (CVE-2026-12462) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12461

Out of bounds read in WebRTC in Microsoft Edge vulnerability

Out of bounds read in WebRTC in Microsoft Edge vulnerability (CVE-2026-12461) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12460

Insufficient policy enforcement in File System Access in Microsoft Edge vulnerability

Insufficient policy enforcement in File System Access in Microsoft Edge vulnerability (CVE-2026-12460) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12459

Inappropriate implementation in Serial in Microsoft Edge vulnerability

Inappropriate implementation in Serial in Microsoft Edge vulnerability (CVE-2026-12459) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12458

Incorrect security UI in Passwords in Microsoft Edge vulnerability

Incorrect security UI in Passwords in Microsoft Edge vulnerability (CVE-2026-12458) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12457

Insufficient data validation in Extensions in Microsoft Edge vulnerability

Insufficient data validation in Extensions in Microsoft Edge vulnerability (CVE-2026-12457) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12456

Insufficient validation of untrusted input in Extensions in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Extensions in Microsoft Edge vulnerability (CVE-2026-12456) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12455

Use after free in Tab Strip in Microsoft Edge vulnerability

Use after free in Tab Strip in Microsoft Edge vulnerability (CVE-2026-12455) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12454

Race in Safe Browsing in Microsoft Edge vulnerability

Race in Safe Browsing in Microsoft Edge vulnerability (CVE-2026-12454) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12453

Insufficient validation of untrusted input in Input in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Input in Microsoft Edge vulnerability (CVE-2026-12453) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12452

Use after free in Downloads in Microsoft Edge vulnerability

Use after free in Downloads in Microsoft Edge vulnerability (CVE-2026-12452) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12451

Use after free in DigitalCredentials in Microsoft Edge vulnerability

Use after free in DigitalCredentials in Microsoft Edge vulnerability (CVE-2026-12451) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12449

Use after free in Chromoting in Microsoft Edge vulnerability

Use after free in Chromoting in Microsoft Edge vulnerability (CVE-2026-12449) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.