Skip to main content

Microsoft security briefs

3328 published alerts for Microsoft products and services.

Microsoft MSRC

CVE-2026-11172

Incorrect security UI in Contact Picker in Microsoft Edge vulnerability

Incorrect security UI in Contact Picker in Microsoft Edge vulnerability (CVE-2026-11172) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11167

Inappropriate implementation in WebView in Microsoft Edge vulnerability

Inappropriate implementation in WebView in Microsoft Edge vulnerability (CVE-2026-11167) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11163

Use after free in Messages in Microsoft Edge vulnerability

Use after free in Messages in Microsoft Edge vulnerability (CVE-2026-11163) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11148

Inappropriate implementation in Payments in Microsoft Edge vulnerability

Inappropriate implementation in Payments in Microsoft Edge vulnerability (CVE-2026-11148) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11145

Race in Geolocation in Microsoft Edge vulnerability

Race in Geolocation in Microsoft Edge vulnerability (CVE-2026-11145) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11131

Use after free in Autofill in Microsoft Edge vulnerability

Use after free in Autofill in Microsoft Edge vulnerability (CVE-2026-11131) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11127

Inappropriate implementation in WebAPKs in Microsoft Edge vulnerability

Inappropriate implementation in WebAPKs in Microsoft Edge vulnerability (CVE-2026-11127) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11119

Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability

Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability (CVE-2026-11119) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11108

Inappropriate implementation in NFC in Microsoft Edge vulnerability

Inappropriate implementation in NFC in Microsoft Edge vulnerability (CVE-2026-11108) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11097

Inappropriate implementation in WebView in Microsoft Edge vulnerability

Inappropriate implementation in WebView in Microsoft Edge vulnerability (CVE-2026-11097) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11082

Use after free in GPU in Microsoft Edge vulnerability

Use after free in GPU in Microsoft Edge vulnerability (CVE-2026-11082) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11080

Use after free in WebView in Microsoft Edge vulnerability

Use after free in WebView in Microsoft Edge vulnerability (CVE-2026-11080) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11077

Out of bounds read in Dawn in Microsoft Edge vulnerability

Out of bounds read in Dawn in Microsoft Edge vulnerability (CVE-2026-11077) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11072

Use after free in WebView in Microsoft Edge vulnerability

Use after free in WebView in Microsoft Edge vulnerability (CVE-2026-11072) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11065

Use after free in ANGLE in Microsoft Edge vulnerability

Use after free in ANGLE in Microsoft Edge vulnerability (CVE-2026-11065) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11064

Uninitialized Use in GPU in Microsoft Edge vulnerability

Uninitialized Use in GPU in Microsoft Edge vulnerability (CVE-2026-11064) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11045

Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability

Insufficient validation of untrusted input in GPU in Microsoft Edge vulnerability (CVE-2026-11045) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11035

Insufficient validation of untrusted input in Custom Tabs in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Custom Tabs in Microsoft Edge vulnerability (CVE-2026-11035) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11034

Insufficient validation of untrusted input in Tab Group Sync in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Tab Group Sync in Microsoft Edge vulnerability (CVE-2026-11034) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11029

Insufficient validation of untrusted input in Drag and Drop in Microsoft Edge vulnerability

Insufficient validation of untrusted input in Drag and Drop in Microsoft Edge vulnerability (CVE-2026-11029) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11019

Inappropriate implementation in Payments in Microsoft Edge vulnerability

Inappropriate implementation in Payments in Microsoft Edge vulnerability (CVE-2026-11019) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11012

Use after free in Serial in Microsoft Edge vulnerability

Use after free in Serial in Microsoft Edge vulnerability (CVE-2026-11012) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11010

Use after free in WebShare in Microsoft Edge vulnerability

Use after free in WebShare in Microsoft Edge vulnerability (CVE-2026-11010) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11007

Insufficient validation of untrusted input in WebView in Microsoft Edge vulnerability

Insufficient validation of untrusted input in WebView in Microsoft Edge vulnerability (CVE-2026-11007) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information. If you need help checking exposure, call (864) 335-9223.