Skip to main content

Vendor/product archive

microsoft / edge CVEs

Beta · best-effort

761 CVEs tagged to microsoft / edge29 Critical, 499 High, 217 Medium, 16 Low, 0 Unrated.

CVE-2016-7286

Published Dec 20, 2016

The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting En…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7282

Published Dec 20, 2016

Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecif…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7281

Published Dec 20, 2016

The Web Workers implementation in Microsoft Internet Explorer 10 and 11 and Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "M…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7280

Published Dec 20, 2016

Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7206

Published Dec 20, 2016

Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2016-7181

Published Dec 20, 2016

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Edge Memory Corruption Vul…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7243

Published Nov 10, 2016

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7242

Published Nov 10, 2016

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7240

Published Nov 10, 2016

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7209

Published Nov 10, 2016

Microsoft Edge allows remote attackers to spoof web content via a crafted web site, aka "Microsoft Edge Spoofing Vulnerability."

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7208

Published Nov 10, 2016

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7204

Published Nov 10, 2016

Microsoft Edge allows remote attackers to access arbitrary "My Documents" files via a crafted web site, aka "Microsoft Edge Information Disclosure Vulnerability."

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2016-7203

Published Nov 10, 2016

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7202

Published Nov 10, 2016

The scripting engines in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corrupti…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7199

Published Nov 10, 2016

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to bypass the Same Origin Policy and obtain sensitive window-state information via a crafted web…

CVSS 3.1 · Low
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7194

Published Oct 14, 2016

The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scri…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 601-625 of 761 CVEsPage 25 of 31