This page lists publicly disclosed CVE vulnerabilities affecting microsoft edge (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2026-35429 | User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 4.3 | 0.06% | 2026-05-12 | 2026-06-01 |
| CVE-2026-33119 | User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 5.4 | 0.03% | 2026-04-10 | 2026-04-14 |
| CVE-2026-26133 | AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network. | [email protected] | 7.1 | 0.05% | 2026-03-16 | 2026-04-09 |
| CVE-2025-62224 | User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an authorized attacker to perform spoofing over a network. | [email protected] | 5.5 | 0.05% | 2026-01-07 | 2026-02-02 |
| CVE-2025-47967 | Insufficient ui warning of dangerous operations in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 4.7 | 0.07% | 2025-09-16 | 2025-10-01 |
| CVE-2025-49755 | User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 4.3 | 0.48% | 2025-08-12 | 2025-08-15 |
| CVE-2025-49736 | The ui performs the wrong action in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 4.3 | 0.67% | 2025-08-12 | 2025-08-15 |
| CVE-2025-29796 | User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 4.7 | 1.02% | 2025-04-04 | 2025-07-09 |
| CVE-2025-25001 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. | [email protected] | 4.3 | 1.20% | 2025-04-04 | 2025-07-09 |
| CVE-2025-21253 | Microsoft Edge for IOS and Android Spoofing Vulnerability | [email protected] | 5.3 | 1.33% | 2025-02-06 | 2025-02-11 |
| CVE-2024-38222 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | [email protected] | 6.5 | 1.89% | 2024-09-12 | 2024-09-18 |
| CVE-2024-41879 | Acrobat Reader versions 127.0.2651.105 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | [email protected] | 7.8 | 1.72% | 2024-08-26 | 2024-09-05 |
| CVE-2024-38208 | Microsoft Edge for Android Spoofing Vulnerability | [email protected] | 6.1 | 0.61% | 2024-08-22 | 2024-09-19 |
| CVE-2024-7971 KEV | Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | [email protected] | 9.6 | 0.99% | 2024-08-21 | 2025-10-24 |
| CVE-2024-38103 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | [email protected] | 5.9 | 1.20% | 2024-07-25 | 2024-11-21 |
| CVE-2024-38156 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | [email protected] | 6.1 | 0.49% | 2024-07-19 | 2024-11-21 |
| CVE-2024-38093 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | [email protected] | 4.3 | 0.50% | 2024-06-20 | 2024-11-21 |
| CVE-2024-38082 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | [email protected] | 4.7 | 0.25% | 2024-06-20 | 2024-11-21 |
| CVE-2024-30057 | Microsoft Edge for iOS Spoofing Vulnerability | [email protected] | 5.4 | 0.60% | 2024-06-13 | 2024-11-21 |
| CVE-2024-29057 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | [email protected] | 4.3 | 0.97% | 2024-03-22 | 2024-11-21 |