CVE-2023-38158: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Published Aug 21, 2023
·Updated
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Affected Software
4 affected componentsFixes available
Microsoft Edge<116.0.1938.54
Microsoft Edge (Chromium-based)
Microsoft Edge Chromium<116.0.1938.54
Microsoft Edge (Chromium-based)<116.0.1938.54
116.0.1938.54
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 116.0.1938.54
Event History
Aug 21, 2023
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeaknessAffected Software
CVE Published
via MITRE·07:04 PM
Data Sourced
via MITRE·07:04 PM
DescriptionSeverity
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-38158?
CVE-2023-38158 is a vulnerability in Microsoft Edge (Chromium-based) that allows for information disclosure.
2
How severe is CVE-2023-38158?
CVE-2023-38158 has a severity level of low with a CVSS score of 3.1.
3
Which versions of Microsoft Edge are affected by CVE-2023-38158?
Microsoft Edge version up to exclusive 116.0.1938.54 is affected by CVE-2023-38158.
4
How can I fix CVE-2023-38158?
To address CVE-2023-38158, update Microsoft Edge to a version that is higher than 116.0.1938.54.
5
Where can I find more information about CVE-2023-38158?
You can find more information about CVE-2023-38158 at the Microsoft Security Response Center website.