Skip to main content

Microsoft security briefs

3324 published alerts for Microsoft products and services.

Microsoft MSRC

CVE-2026-14058

Policy bypass in Parser in Microsoft Edge vulnerability

Policy bypass in Parser in Microsoft Edge vulnerability (CVE-2026-14058) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14057

Insufficient policy enforcement in FedCM in Microsoft Edge vulnerability

Insufficient policy enforcement in FedCM in Microsoft Edge vulnerability (CVE-2026-14057) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14056

Insufficient validation of untrusted input in Media in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Media in Microsoft Edge vulnerability (CVE-2026-14056) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14055

Insufficient validation of untrusted input in Device Trust in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Device Trust in Microsoft Edge vulnerability (CVE-2026-14055) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14054

Insufficient policy enforcement in Network in Microsoft Edge vulnerability

Insufficient policy enforcement in Network in Microsoft Edge vulnerability (CVE-2026-14054) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14053

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability (CVE-2026-14053) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14052

Insufficient policy enforcement in FileSystem in Microsoft Edge vulnerability

Insufficient policy enforcement in FileSystem in Microsoft Edge vulnerability (CVE-2026-14052) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14051

Uninitialized Use in GamepadAPI in Microsoft Edge vulnerability

Uninitialized Use in GamepadAPI in Microsoft Edge vulnerability (CVE-2026-14051) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14050

Insufficient policy enforcement in Passwords in Microsoft Edge vulnerability

Insufficient policy enforcement in Passwords in Microsoft Edge vulnerability (CVE-2026-14050) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14049

Inappropriate implementation in GPU in Microsoft Edge vulnerability

Inappropriate implementation in GPU in Microsoft Edge vulnerability (CVE-2026-14049) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14048

Use after free in Chromecast in Microsoft Edge vulnerability

Use after free in Chromecast in Microsoft Edge vulnerability (CVE-2026-14048) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14047

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability

Insufficient policy enforcement in Extensions in Microsoft Edge vulnerability (CVE-2026-14047) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14046

Inappropriate implementation in CustomTabs in Microsoft Edge vulnerability

Inappropriate implementation in CustomTabs in Microsoft Edge vulnerability (CVE-2026-14046) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14045

Insufficient validation of untrusted input in Network in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Network in Microsoft Edge vulnerability (CVE-2026-14045) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14044

Use after free in ANGLE in Microsoft Edge vulnerability

Use after free in ANGLE in Microsoft Edge vulnerability (CVE-2026-14044) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14043

Use after free in GetUserMedia in Microsoft Edge vulnerability

Use after free in GetUserMedia in Microsoft Edge vulnerability (CVE-2026-14043) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14042

Inappropriate implementation in Isolated Web Apps in Microsoft Edge vulnerability

Inappropriate implementation in Isolated Web Apps in Microsoft Edge vulnerability (CVE-2026-14042) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14041

Insufficient policy enforcement in Serial in Microsoft Edge vulnerability

Insufficient policy enforcement in Serial in Microsoft Edge vulnerability (CVE-2026-14041) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14040

Use after free in BrowserTag in Microsoft Edge vulnerability

Use after free in BrowserTag in Microsoft Edge vulnerability (CVE-2026-14040) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14039

Insufficient policy enforcement in GetUserMedia in Microsoft Edge vulnerability

Insufficient policy enforcement in GetUserMedia in Microsoft Edge vulnerability (CVE-2026-14039) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14038

Insufficient validation of untrusted input in New Tab Page in Microsoft Edge vulnerability

Insufficient validation of untrusted input in New Tab Page in Microsoft Edge vulnerability (CVE-2026-14038) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14037

Insufficient policy enforcement in GPU in Microsoft Edge vulnerability

Insufficient policy enforcement in GPU in Microsoft Edge vulnerability (CVE-2026-14037) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14036

Insufficient policy enforcement in Bluetooth in Microsoft Edge vulnerability

Insufficient policy enforcement in Bluetooth in Microsoft Edge vulnerability (CVE-2026-14036) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-14035

Insufficient policy enforcement in Bluetooth in Microsoft Edge vulnerability

Insufficient policy enforcement in Bluetooth in Microsoft Edge vulnerability (CVE-2026-14035) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.