Microsoft

Chromium CVE-2026-85052: Out of bounds read in CrashReporting

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium CVE-2026-85051: Type confusion in Compositing

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium CVE-2026-85049: Use after free in Skia

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium CVE-2026-85048: Use after free in Compositing

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium CVE-2026-85045: Race condition in V8

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium CVE-2026-85043: Incomplete cleanup in Network

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium CVE-2026-85042: Use after free in DevTools

Microsoft Security Center Center News - Fri, 09/11/2026 - 23:49
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium: CVE-2026-84333 Use after free in Dawn

Microsoft Security Center Center News - Fri, 09/11/2026 - 14:00
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium: CVE-2026-84330 UI misrepresentation in FullScreen

Microsoft Security Center Center News - Fri, 09/11/2026 - 14:00
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium: CVE-2026-84352 Use after free in WebGL

Microsoft Security Center Center News - Fri, 09/11/2026 - 14:00
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

CVE-2026-85892 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Fri, 09/11/2026 - 14:00

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-77490 Microsoft Edge (Chromium-based) Spoofing Vulnerability

Microsoft Security Center Center News - Fri, 09/11/2026 - 14:00

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

Categories: Microsoft

Chromium: CVE-2025-2137 Out of bounds read in V8

Microsoft Security Center Center News - Fri, 09/11/2026 - 08:44
Information published.
Categories: Microsoft

Chromium: CVE-2025-1920 Type Confusion in V8

Microsoft Security Center Center News - Fri, 09/11/2026 - 08:44
Information published.
Categories: Microsoft

Chromium: CVE-2026-85046 Type confusion in V8

Microsoft Security Center Center News - Wed, 09/09/2026 - 22:09
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. Google is aware that an exploit for CVE-2026-85046 exists in the wild.
Categories: Microsoft

CVE-2026-62706 Microsoft Windows Media Foundation Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

Categories: Microsoft

CVE-2026-62694 Windows Installer Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-62744 Microsoft Windows Media Foundation Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

Categories: Microsoft

CVE-2026-66304 Skype for Business Information Disclosure Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Server-side request forgery (ssrf) in Skype for Business allows an unauthorized attacker to disclose information over a network.

Categories: Microsoft

CVE-2026-66302 Skype for Business Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

External control of file name or path in Skype for Business allows an unauthorized attacker to execute code over a network.

Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator - Microsoft