950 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

11 Jul 2025 — No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47963 • CWE-451: User Interface (UI) Misrepresentation of Critical Information •

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

11 Jul 2025 — Microsoft Edge (Chromium-based) Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47964 • CWE-451: User Interface (UI) Misrepresentation of Critical Information •

CVSS: 5.6EPSS: 0%CPEs: 1EXPL: 0

11 Jul 2025 — Improper input validation in Microsoft Edge (Chromium-based) allows an authorized attacker to bypass a security feature locally. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47182 • CWE-20: Improper Input Validation •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

02 Jul 2025 — Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49713 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

01 Jul 2025 — No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. No hay solución para este problema en Microsoft Edge (basado en Chromium) que permite que un atacante no autorizado divulgue información a través de una red. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49741 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-268: Privilege Chaining •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 2

22 May 2025 — Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally. • https://packetstorm.news/files/id/204892 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

02 May 2025 — User interface (ui) misrepresentation of critical information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29825 • CWE-451: User Interface (UI) Misrepresentation of Critical Information •

CVSS: 7.6EPSS: 0%CPEs: 1EXPL: 0

12 Apr 2025 — Out-of-bounds read in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29834 • CWE-125: Out-of-bounds Read •

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

04 Apr 2025 — User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network. La tergiversación de información crítica en la interfaz de usuario (IU) de Microsoft Edge para iOS permite que un atacante no autorizado realice suplantación de identidad a través de una red. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29796 • CWE-451: User Interface (UI) Misrepresentation of Critical Information •

CVSS: 8.7EPSS: 0%CPEs: 1EXPL: 0

04 Apr 2025 — Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network. Use after free en Microsoft Edge (basado en Chromium) permite que un atacante autorizado ejecute código a través de una red. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-29815 • CWE-416: Use After Free •