📦 Edge Chromium

by Microsoft

🔍 What is Edge Chromium?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-21326

CRITICAL CVSS 9.6 Jan 26, 2024

This vulnerability in Microsoft Edge allows attackers to gain elevated privileges on affected systems by exploiting a use-after-free memory corruption flaw. It affects users running vulnerable version...

CVE-2023-6345

CRITICAL CVSS 9.6 Nov 29, 2023

This CVE describes an integer overflow vulnerability in Skia (Chrome's graphics engine) that allows an attacker who has already compromised Chrome's renderer process to potentially escape the browser ...

CVE-2023-36735

CRITICAL CVSS 9.6 Sep 15, 2023

This vulnerability in Microsoft Edge allows attackers to execute arbitrary code with elevated privileges by exploiting a use-after-free memory corruption flaw. It affects all users running vulnerable ...

CVE-2021-21132

CRITICAL CVSS 9.6 Feb 9, 2021

This vulnerability in Chrome DevTools allowed malicious Chrome extensions to escape the browser's security sandbox. Attackers could potentially execute arbitrary code on the victim's system. All Chrom...

CVE-2021-21121

CRITICAL CVSS 9.6 Feb 9, 2021

This is a use-after-free vulnerability in the Omnibox (address bar) component of Google Chrome on Linux. It allows a remote attacker to potentially escape Chrome's sandbox and execute arbitrary code b...

CVE-2021-21124

CRITICAL CVSS 9.6 Feb 9, 2021

This is a use-after-free vulnerability in Google Chrome's Speech Recognizer component on Android. It allows a remote attacker to potentially escape Chrome's sandbox and execute arbitrary code by trick...

CVE-2026-21223

HIGH CVSS 7.1 Jan 16, 2026

This vulnerability allows a standard local user without administrative privileges to execute privileged update commands via Microsoft Edge's Elevation Service. By exploiting the IElevatorEdge interfac...

CVE-2025-14174

HIGH CVSS 8.8 Dec 12, 2025

This vulnerability allows remote attackers to perform out-of-bounds memory access in ANGLE (Almost Native Graphics Layer Engine) in Google Chrome on macOS. Attackers can exploit this by tricking users...

CVE-2025-49741

HIGH CVSS 7.4 Jul 1, 2025

This vulnerability in Microsoft Edge (Chromium-based) allows unauthorized attackers to access sensitive information over a network. It affects all users running vulnerable versions of Microsoft Edge, ...

CVE-2025-29815

HIGH CVSS 7.6 Apr 4, 2025

A use-after-free vulnerability in Microsoft Edge (Chromium-based) allows an authenticated attacker to execute arbitrary code remotely over a network. This affects users running vulnerable versions of ...

CVE-2025-21342

HIGH CVSS 8.8 Feb 6, 2025

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into visiting a malicious website. All users running vulne...

CVE-2025-21408

HIGH CVSS 8.8 Feb 6, 2025

This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of Microsoft Edge. Attackers could exploit this by tricking users into visiting a malicious ...

CVE-2024-43578

HIGH CVSS 7.6 Oct 17, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by exploiting a heap-based buffer overflow (CWE-122). Users running vulnerab...

CVE-2024-38209

HIGH CVSS 7.8 Aug 22, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into visiting a specially crafted website. All users runni...

CVE-2024-7965

HIGH CVSS 8.8 Aug 21, 2024

This vulnerability in Chrome's V8 JavaScript engine allows attackers to trigger heap corruption through malicious HTML pages. Successful exploitation could lead to arbitrary code execution or browser ...

CVE-2024-38218

HIGH CVSS 8.4 Aug 12, 2024

This vulnerability in Microsoft Edge allows attackers to execute arbitrary code by exploiting memory corruption through specially crafted HTML content. It affects users running vulnerable versions of ...

CVE-2024-30056

HIGH CVSS 7.1 May 25, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows an attacker to potentially access sensitive information from the browser's memory. It affects users running vulnerable versions of Microsof...

CVE-2024-26192

HIGH CVSS 8.2 Feb 23, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows an attacker to potentially access sensitive information from the browser's memory. It affects users running vulnerable versions of Microsof...

CVE-2024-21399

HIGH CVSS 8.3 Feb 2, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems. Attackers could exploit this by tricking users into visiting a specially cr...

CVE-2024-21385

HIGH CVSS 8.3 Jan 26, 2024

This vulnerability in Microsoft Edge allows attackers to gain elevated privileges on affected systems by exploiting a use-after-free memory corruption flaw. It affects users running vulnerable version...

CVE-2023-6702

HIGH CVSS 8.8 Dec 14, 2023

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow an attacker to trigger heap corruption by tricking the browser into misinterpreting object types. Attacker...

CVE-2023-36014

HIGH CVSS 7.3 Nov 10, 2023

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into visiting a specially crafted website. All users runni...

CVE-2023-36034

HIGH CVSS 7.3 Nov 3, 2023

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to execute arbitrary code on a user's system by tricking them into visiting a malicious website. It affects all users running vul...

CVE-2023-36562

HIGH CVSS 7.1 Sep 15, 2023

This vulnerability in Microsoft Edge allows attackers to gain elevated privileges on affected systems by exploiting a use-after-free memory corruption issue. It affects users running vulnerable versio...

CVE-2023-4762

HIGH CVSS 8.8 Sep 5, 2023

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that allows remote attackers to execute arbitrary code by tricking the browser into misinterpreting object types. It affects all...

CVE-2023-36741

HIGH CVSS 8.3 Aug 26, 2023

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows system...

CVE-2023-36787

HIGH CVSS 8.8 Aug 21, 2023

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to gain elevated privileges through a use-after-free memory corruption flaw. It affects users running vulnerable versions of Micr...

CVE-2023-36887

HIGH CVSS 7.8 Jul 14, 2023

This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of Microsoft Edge. Attackers can exploit this by tricking users into visiting a malicious we...

CVE-2021-31982

HIGH CVSS 8.8 Jul 1, 2023

This vulnerability allows attackers to bypass security features in Microsoft Edge (Chromium-based), potentially enabling malicious websites to execute unauthorized actions. It affects all users runnin...

CVE-2022-29144

HIGH CVSS 7.5 Jun 29, 2023

This vulnerability in Microsoft Edge (Chromium-based) allows an attacker to execute code with elevated privileges. It affects users running vulnerable versions of Microsoft Edge on Windows systems. Su...

CVE-2023-33143

HIGH CVSS 7.5 Jun 3, 2023

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows system...

CVE-2023-29350

HIGH CVSS 7.5 May 5, 2023

This vulnerability in Microsoft Edge allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows systems. Successful exp...

CVE-2023-24892

HIGH CVSS 8.2 Mar 14, 2023

This vulnerability allows attackers to spoof URLs in Microsoft Edge WebView2, potentially tricking users into visiting malicious sites. It affects applications using WebView2 control on Windows system...

CVE-2022-33639

HIGH CVSS 8.3 Jun 29, 2022

This vulnerability in Microsoft Edge (Chromium-based) allows an attacker to gain elevated privileges on a compromised system. It affects users running vulnerable versions of Microsoft Edge on Windows ...

CVE-2022-30127

HIGH CVSS 8.3 Jun 1, 2022

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to execute code with elevated privileges by exploiting a race condition (CWE-362). It affects users running vulnerable versions o...

CVE-2022-26909

HIGH CVSS 8.3 Apr 5, 2022

This vulnerability allows an attacker to gain elevated privileges in Microsoft Edge by exploiting a flaw in the Chromium-based browser's security model. It affects users running vulnerable versions of...

CVE-2022-24475

HIGH CVSS 8.3 Apr 5, 2022

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows system...

CVE-2022-26894

HIGH CVSS 8.3 Apr 5, 2022

This vulnerability allows an attacker to gain elevated privileges in Microsoft Edge by exploiting a flaw in the Chromium-based browser. It affects users running vulnerable versions of Microsoft Edge o...

CVE-2022-26900

HIGH CVSS 8.3 Apr 5, 2022

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows system...

CVE-2022-23263

HIGH CVSS 7.7 Feb 7, 2022

This vulnerability in Microsoft Edge (Chromium-based) allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows system...

CVE-2021-30624

HIGH CVSS 8.8 Sep 3, 2021

CVE-2021-30624 is a use-after-free vulnerability in Chromium's Autofill feature that allows attackers to execute arbitrary code or cause a denial of service. This affects all Chromium-based browsers i...

CVE-2021-30606

HIGH CVSS 8.8 Sep 3, 2021

CVE-2021-30606 is a use-after-free vulnerability in Chromium's Blink rendering engine that allows remote attackers to execute arbitrary code or cause denial of service via crafted web content. This af...

CVE-2021-30608

HIGH CVSS 8.8 Sep 3, 2021

CVE-2021-30608 is a use-after-free vulnerability in Chromium's Web Share API that allows remote attackers to execute arbitrary code or cause a denial of service via a crafted HTML page. This affects a...

CVE-2021-30610

HIGH CVSS 8.8 Sep 3, 2021

This vulnerability is a use-after-free flaw in Chromium's Extensions API that allows remote attackers to execute arbitrary code or cause a denial of service via a crafted HTML page. It affects all Chr...

CVE-2021-30612

HIGH CVSS 8.8 Sep 3, 2021

CVE-2021-30612 is a use-after-free vulnerability in WebRTC component of Chromium-based browsers. It allows remote attackers to execute arbitrary code or cause denial of service via crafted web content...

CVE-2021-30614

HIGH CVSS 8.8 Sep 3, 2021

This is a heap buffer overflow vulnerability in Chromium's TabStrip component that allows attackers to execute arbitrary code or cause denial of service. It affects all Chromium-based browsers includi...

CVE-2026-0391

MEDIUM CVSS 6.5 Feb 5, 2026

This vulnerability allows an attacker to spoof information in Microsoft Edge for Android's user interface, potentially tricking users into believing they are interacting with legitimate content when t...

CVE-2025-62223

MEDIUM CVSS 4.3 Dec 5, 2025

This vulnerability in Microsoft Edge for iOS allows attackers to spoof user interface elements, potentially tricking users into revealing sensitive information or performing unintended actions. It aff...

CVE-2025-60711

MEDIUM CVSS 6.3 Oct 31, 2025

A protection mechanism failure in Microsoft Edge (Chromium-based) allows unauthorized attackers to execute arbitrary code over a network connection. This affects all users running vulnerable versions ...

CVE-2025-53791

MEDIUM CVSS 4.7 Sep 5, 2025

An improper access control vulnerability in Microsoft Edge allows attackers to bypass security features over a network. This affects users of Microsoft Edge (Chromium-based) who visit malicious websit...

CVE-2025-47963

MEDIUM CVSS 6.3 Jul 11, 2025

This vulnerability in Microsoft Edge (Chromium-based) allows unauthorized attackers to perform spoofing attacks over a network. Attackers can trick users into believing they're interacting with legiti...

CVE-2025-29806

MEDIUM CVSS 6.5 Mar 23, 2025

This vulnerability in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute arbitrary code over a network connection. It affects all users running vulnerable versions of Microsoft...

CVE-2025-26643

MEDIUM CVSS 5.4 Mar 7, 2025

This vulnerability in Microsoft Edge allows an unauthorized attacker to perform spoofing attacks over a network by exploiting incorrect UI actions. It affects users of Microsoft Edge (Chromium-based) ...

CVE-2025-21401

MEDIUM CVSS 4.5 Feb 15, 2025

This vulnerability allows attackers to bypass security features in Microsoft Edge, potentially enabling malicious websites to perform actions that should be restricted. It affects users running vulner...

CVE-2025-21279

MEDIUM CVSS 6.5 Feb 6, 2025

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into visiting a malicious website. All users running vulne...

CVE-2025-21404

MEDIUM CVSS 4.3 Feb 6, 2025

This vulnerability in Microsoft Edge allows attackers to spoof UI elements, potentially tricking users into interacting with malicious content. It affects users of Microsoft Edge (Chromium-based) on s...

CVE-2025-21262

MEDIUM CVSS 5.4 Jan 24, 2025

This vulnerability allows an attacker to spoof UI elements in Microsoft Edge, potentially tricking users into interacting with malicious content disguised as legitimate interface components. It affect...

CVE-2025-21185

MEDIUM CVSS 6.5 Jan 17, 2025

This vulnerability in Microsoft Edge allows attackers to gain elevated privileges on affected systems. It affects users running vulnerable versions of Microsoft Edge on Windows, potentially enabling u...

CVE-2024-49054

MEDIUM CVSS 4.3 Nov 22, 2024

This vulnerability in Microsoft Edge allows attackers to spoof UI elements, potentially tricking users into interacting with malicious content. It affects users of Microsoft Edge (Chromium-based) on s...

CVE-2024-43577

MEDIUM CVSS 4.3 Oct 18, 2024

This vulnerability allows an attacker to spoof content in Microsoft Edge's browser UI, potentially tricking users into interacting with malicious elements. It affects users of Microsoft Edge (Chromium...

CVE-2024-49023

MEDIUM CVSS 5.9 Oct 18, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by exploiting a use-after-free memory corruption issue. Users running vulner...

CVE-2024-43595

MEDIUM CVSS 6.5 Oct 17, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into visiting a specially crafted website. All users runni...

CVE-2024-43580

MEDIUM CVSS 5.4 Oct 17, 2024

This vulnerability in Microsoft Edge allows attackers to spoof UI elements, potentially tricking users into interacting with malicious content. It affects users of Microsoft Edge (Chromium-based) on W...

CVE-2024-43489

MEDIUM CVSS 6.5 Sep 19, 2024

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into visiting a malicious website. All users running vulne...

CVE-2024-38207

MEDIUM CVSS 6.3 Aug 23, 2024

This vulnerability in Microsoft Edge allows attackers to execute arbitrary code by exploiting memory corruption through specially crafted HTML content. It affects users running vulnerable versions of ...

CVE-2025-65046

LOW CVSS 3.1 Dec 18, 2025

This vulnerability in Microsoft Edge allows attackers to spoof content in the browser's address bar or UI elements, potentially tricking users into believing they're on a legitimate site. It affects u...