Microsoft security briefs
3328 published alerts for Microsoft products and services.
Incorrect security UI in Contact Picker in Microsoft Edge vulnerability
Incorrect security UI in Contact Picker in Microsoft Edge vulnerability (CVE-2026-11172) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Inappropriate implementation in WebView in Microsoft Edge vulnerability
Inappropriate implementation in WebView in Microsoft Edge vulnerability (CVE-2026-11167) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in Messages in Microsoft Edge vulnerability
Use after free in Messages in Microsoft Edge vulnerability (CVE-2026-11163) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Inappropriate implementation in Payments in Microsoft Edge vulnerability
Inappropriate implementation in Payments in Microsoft Edge vulnerability (CVE-2026-11148) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Race in Geolocation in Microsoft Edge vulnerability
Race in Geolocation in Microsoft Edge vulnerability (CVE-2026-11145) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in Autofill in Microsoft Edge vulnerability
Use after free in Autofill in Microsoft Edge vulnerability (CVE-2026-11131) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Inappropriate implementation in WebAPKs in Microsoft Edge vulnerability
Inappropriate implementation in WebAPKs in Microsoft Edge vulnerability (CVE-2026-11127) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability
Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability (CVE-2026-11119) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Inappropriate implementation in NFC in Microsoft Edge vulnerability
Inappropriate implementation in NFC in Microsoft Edge vulnerability (CVE-2026-11108) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Inappropriate implementation in WebView in Microsoft Edge vulnerability
Inappropriate implementation in WebView in Microsoft Edge vulnerability (CVE-2026-11097) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in GPU in Microsoft Edge vulnerability
Use after free in GPU in Microsoft Edge vulnerability (CVE-2026-11082) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in WebView in Microsoft Edge vulnerability
Use after free in WebView in Microsoft Edge vulnerability (CVE-2026-11080) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Out of bounds read in Dawn in Microsoft Edge vulnerability
Out of bounds read in Dawn in Microsoft Edge vulnerability (CVE-2026-11077) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in WebView in Microsoft Edge vulnerability
Use after free in WebView in Microsoft Edge vulnerability (CVE-2026-11072) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in ANGLE in Microsoft Edge vulnerability
Use after free in ANGLE in Microsoft Edge vulnerability (CVE-2026-11065) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Uninitialized Use in GPU in Microsoft Edge vulnerability
Uninitialized Use in GPU in Microsoft Edge vulnerability (CVE-2026-11064) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability
Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability (CVE-2026-11045) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in Custom Tabs in Microsoft Edge vulnerability
Insufficient validation of untrusted input in Custom Tabs in Microsoft Edge vulnerability (CVE-2026-11035) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in Tab Group Sync in Microsoft Edge vulnerability
Insufficient validation of untrusted input in Tab Group Sync in Microsoft Edge vulnerability (CVE-2026-11034) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in Drag and Drop in Microsoft Edge vulnerability
Insufficient validation of untrusted input in Drag and Drop in Microsoft Edge vulnerability (CVE-2026-11029) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Inappropriate implementation in Payments in Microsoft Edge vulnerability
Inappropriate implementation in Payments in Microsoft Edge vulnerability (CVE-2026-11019) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in Serial in Microsoft Edge vulnerability
Use after free in Serial in Microsoft Edge vulnerability (CVE-2026-11012) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Use after free in WebShare in Microsoft Edge vulnerability
Use after free in WebShare in Microsoft Edge vulnerability (CVE-2026-11010) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.
Insufficient validation of untrusted input in WebView in Microsoft Edge vulnerability
Insufficient validation of untrusted input in WebView in Microsoft Edge vulnerability (CVE-2026-11007) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.