Skip to main content

Microsoft Edge vulnerabilities

622 published alerts for Microsoft Microsoft Edge.

Microsoft MSRC

CVE-2026-12447

Heap buffer overflow in WebRTC in Microsoft Edge vulnerability

Heap buffer overflow in WebRTC in Microsoft Edge vulnerability (CVE-2026-12447) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12446

Insufficient data validation in Passwords in Microsoft Edge vulnerability

Insufficient data validation in Passwords in Microsoft Edge vulnerability (CVE-2026-12446) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12445

Use after free in Extensions in Microsoft Edge vulnerability

Use after free in Extensions in Microsoft Edge vulnerability (CVE-2026-12445) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12444

Out of bounds read in Chromoting in Microsoft Edge vulnerability

Out of bounds read in Chromoting in Microsoft Edge vulnerability (CVE-2026-12444) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12443

Use after free in Web Authentication in Microsoft Edge vulnerability

Use after free in Web Authentication in Microsoft Edge vulnerability (CVE-2026-12443) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12441

Use after free in File Input in Microsoft Edge vulnerability

Use after free in File Input in Microsoft Edge vulnerability (CVE-2026-12441) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12440

Use after free in DigitalCredentials in Microsoft Edge vulnerability

Use after free in DigitalCredentials in Microsoft Edge vulnerability (CVE-2026-12440) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12439

Use after free in Digital Credentials in Microsoft Edge vulnerability

Use after free in Digital Credentials in Microsoft Edge vulnerability (CVE-2026-12439) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12437

Use after free in WebShare in Microsoft Edge vulnerability

Use after free in WebShare in Microsoft Edge vulnerability (CVE-2026-12437) was added to Microsoft’s security update guidance. Corrected CVE title. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11701

Use after free in Tracing in Microsoft Edge vulnerability

Use after free in Tracing in Microsoft Edge vulnerability (CVE-2026-11701) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11700

Use after free in Bluetooth in Microsoft Edge vulnerability

Use after free in Bluetooth in Microsoft Edge vulnerability (CVE-2026-11700) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11699

Use after free in Bluetooth in Microsoft Edge vulnerability

Use after free in Bluetooth in Microsoft Edge vulnerability (CVE-2026-11699) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11698

Insufficient validation of untrusted input in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Microsoft Edge vulnerability (CVE-2026-11698) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11697

Uninitialized Use in Video in Microsoft Edge vulnerability

Uninitialized Use in Video in Microsoft Edge vulnerability (CVE-2026-11697) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11696

Inappropriate implementation in Passwords in Microsoft Edge vulnerability

Inappropriate implementation in Passwords in Microsoft Edge vulnerability (CVE-2026-11696) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11695

Use after free in ServiceWorker in Microsoft Edge vulnerability

Use after free in ServiceWorker in Microsoft Edge vulnerability (CVE-2026-11695) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11694

Inappropriate implementation in Plugins in Microsoft Edge vulnerability

Inappropriate implementation in Plugins in Microsoft Edge vulnerability (CVE-2026-11694) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11693

Use after free in Read Anything in Microsoft Edge vulnerability

Use after free in Read Anything in Microsoft Edge vulnerability (CVE-2026-11693) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11692

Insufficient validation of untrusted input in New Tab Page in Microsoft Edge vulnerability

Insufficient validation of untrusted input in New Tab Page in Microsoft Edge vulnerability (CVE-2026-11692) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11691

Out of bounds read and write in Media in Microsoft Edge vulnerability

Out of bounds read and write in Media in Microsoft Edge vulnerability (CVE-2026-11691) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11690

Insufficient validation of untrusted input in Passwords in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Passwords in Microsoft Edge vulnerability (CVE-2026-11690) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11689

Object lifecycle issue in SVG in Microsoft Edge vulnerability

Object lifecycle issue in SVG in Microsoft Edge vulnerability (CVE-2026-11689) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11688

Use after free in Dawn in Microsoft Edge vulnerability

Use after free in Dawn in Microsoft Edge vulnerability (CVE-2026-11688) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11687

Insufficient validation of untrusted input in Dawn in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Dawn in Microsoft Edge vulnerability (CVE-2026-11687) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.