Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
Incorrect authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Improper neutralization of parameter/argument delimiters in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Concurrent execution using shared resource with improper synchronization ('race condition') in Copilot Chat (Microsoft Edge) allows an authorized attacker to disclose information over a network.
Chromium: CVE-2026-84325 Improper input validation in DataTransfer
Chromium: CVE-2026-79030 Observable discrepancy in Autofill
Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Chromium: CVE-2026-79078 Use after free in FedCM
Chromium: CVE-2026-84326 Uninitialized resource in V8
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Chromium: CVE-2026-79236 Type confusion in V8
Chromium: CVE-2026-78952 Out of bounds write in Crashpad
Chromium: CVE-2026-78938 Type confusion in V8
Chromium: CVE-2026-19560 Use after free in Blink
Chromium: CVE-2026-19559 Use after free in HTML
Chromium: CVE-2026-19558 Use after free in Extensions
Chromium: CVE-2026-19557 Use after free in TabStrip
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Chromium: CVE-2026-79274 Information leak in GPU
Chromium: CVE-2026-76045 Use after free in WebGL
Chromium: CVE-2026-76038 Type confusion in V8
Microsoft Edge (Chromium-based) Tampering Vulnerability
External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.
Improper control of generation of code ('code injection') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability