Vulnerabilities > Microsoft > Edge

DATE CVE VULNERABILITY TITLE RISK
2021-02-09 CVE-2021-21141 Injection vulnerability in multiple products
Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass file extension policy via a crafted HTML page.
network
low complexity
google microsoft CWE-74
6.5
2021-02-09 CVE-2021-21140 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of bounds memory access via via a USB device.
low complexity
google microsoft CWE-119
6.8
2021-01-12 CVE-2021-1705 Unspecified vulnerability in Microsoft Edge
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
network
high complexity
microsoft
4.2
2020-12-10 CVE-2020-17153 Unspecified vulnerability in Microsoft Edge
Microsoft Edge for Android Spoofing Vulnerability
network
low complexity
microsoft
4.3
2020-12-10 CVE-2020-17131 Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge
Chakra Scripting Engine Memory Corruption Vulnerability
network
high complexity
microsoft CWE-787
4.2
2020-11-11 CVE-2020-17058 Out-of-bounds Write vulnerability in Microsoft Edge and Internet Explorer
Microsoft Browser Memory Corruption Vulnerability
network
high complexity
microsoft CWE-787
7.5
2020-11-11 CVE-2020-17054 Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge
Chakra Scripting Engine Memory Corruption Vulnerability
network
high complexity
microsoft CWE-787
4.2
2020-11-11 CVE-2020-17052 Out-of-bounds Write vulnerability in Microsoft Edge and Internet Explorer
Scripting Engine Memory Corruption Vulnerability
network
high complexity
microsoft CWE-787
7.5
2020-11-11 CVE-2020-17048 Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge
Chakra Scripting Engine Memory Corruption Vulnerability
network
high complexity
microsoft CWE-787
4.2
2020-11-03 CVE-2020-16009 Type Confusion vulnerability in multiple products
Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
8.8