← Back

Edge

edge

Vendor: Microsoft • 760 CVEs

CVEs (760)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
2Edge
Edge Chromium
Sep 1, 2026
Aug 28, 2026
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Improper neutralization of input used for llm prompting in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Aug 7, 2026
Aug 4, 2026
N/A· v4
7.1 HIGH· v3
N/A· v2
External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.
1Microsoft
1Edge
Aug 5, 2026
Jul 28, 2026
N/A· v4
5.4 MEDIUM· v3
N/A· v2
Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network.
1Microsoft
1Edge
Jun 17, 2026
May 12, 2026
N/A· v4
4.3 MEDIUM· v3
N/A· v2
User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Apr 10, 2026
N/A· v4
5.4 MEDIUM· v3
N/A· v2
User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Apr 15, 2026
Mar 27, 2026
N/A· v4
N/A· v3
N/A· v2
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
1Microsoft
10365 Copilot
EdgeExcel+7 more
Jun 17, 2026
Mar 16, 2026
N/A· v4
7.1 HIGH· v3
N/A· v2
AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network.
1Microsoft
1Edge
Jun 17, 2026
Jan 7, 2026
N/A· v4
3.5 LOW· v3
N/A· v2
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an authorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Sep 16, 2025
N/A· v4
4.7 MEDIUM· v3
N/A· v2
Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Aug 12, 2025
N/A· v4
4.3 MEDIUM· v3
N/A· v2
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Aug 12, 2025
N/A· v4
4.3 MEDIUM· v3
N/A· v2
The ui performs the wrong action in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Apr 4, 2025
N/A· v4
4.7 MEDIUM· v3
N/A· v2
User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Apr 4, 2025
N/A· v4
4.3 MEDIUM· v3
N/A· v2
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
1Microsoft
1Edge
Jun 17, 2026
Feb 6, 2025
N/A· v4
5.3 MEDIUM· v3
N/A· v2
Microsoft Edge for IOS and Android Spoofing Vulnerability
1Microsoft
1Edge
Aug 10, 2026
Sep 12, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
2Adobe
Microsoft
2Acrobat Reader
Edge
Jun 17, 2026
Aug 26, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Acrobat Reader versions 127.0.2651.105 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue require...Show more
Acrobat Reader versions 127.0.2651.105 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.Show less
1Microsoft
1Edge
Jun 17, 2026
Aug 22, 2024
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Microsoft Edge for Android Spoofing Vulnerability
2Google
Microsoft
2Chrome
Edge
Jun 17, 2026
Aug 21, 2024
N/A· v4
9.6 CRITICAL· v3
N/A· v2
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
1Microsoft
1Edge
Jun 17, 2026
Jul 25, 2024
N/A· v4
5.9 MEDIUM· v3
N/A· v2
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
1Microsoft
1Edge
Jun 17, 2026
Jul 19, 2024
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Microsoft Edge (Chromium-based) Spoofing Vulnerability