Known vulnerabilities in Microsoft Edge for Android

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:microsoft_edge_for_android:*:*:*:*:*:*:*:*
Total vulnerabilities: 25
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Microsoft Edge for Android Microsoft Edge for Android is affected by 25 known vulnerabilities: 14 medium, 11 low Critical High Medium Low

Vulnerabilities (25)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140709 - External Control of File Name or Path
CVE-2026-65802
CWE-73 Medium
No
No
151.0.4129.59 31.07.2026 SB2026080201
#VU140710 - External Control of File Name or Path
CVE-2026-66310
CWE-73 Low
No
No
151.0.4129.59 31.07.2026 SB2026080201
#VU139958 - Improper input validation
CVE-2026-62828
CWE-20 Medium
No
No
- 29.07.2026 SB2026072913
#VU131176 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-35429
CWE-451 Medium
No
No
148.0.3967.55 12.05.2026 SB2026051275
#VU131175 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-42891
CWE-451 Medium
No
No
148.0.3967.55 12.05.2026 SB2026051275
#VU125815 - Insufficient UI Warning of Dangerous Operations
CVE-2026-33119
CWE-357 Medium
No
No
147.0.3912.60 11.04.2026 SB2026041110
#VU124019 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-0385
CWE-451 Medium
No
No
146.0.3856.59 14.03.2026 SB2026031417
#VU122422 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-0391
CWE-451 Medium
No
No
143.0.3650.66 06.02.2026 SB2026020609
#VU115749 - Insufficient UI Warning of Dangerous Operations
CVE-2025-47967
CWE-357 Low
No
No
140.0.3485.71 17.09.2025 SB2025091781
#VU113857 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-49736
CWE-451 Medium
No
No
139.0.3405.86 12.08.2025 SB2025081270
#VU113854 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-49755
CWE-451 Medium
No
No
139.0.3405.86 12.08.2025 SB2025081270
#VU103693 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-21253
CWE-451 Low
No
No
133.0.3065.51 07.02.2025 SB2025020707
#VU96474 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-38208
CWE-451 Medium
No
No
128.0.2739.42 23.08.2024 SB2024082322
#VU87548 - Security Features
CVE-2024-26246
CWE-254 Low
No
No
122.0.2365.92 15.03.2024 SB2024031506
#VU87278 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-26167
CWE-451 Low
No
No
122.0.2365.80 08.03.2024 SB2024030801
#VU86931 - Exposure of sensitive information to an unauthorized actor
CVE-2024-26196
CWE-200 Low
No
No
122.0.2365.63 29.02.2024 SB2024022952
#VU85814 - Exposure of sensitive information to an unauthorized actor
CVE-2024-21382
CWE-200 Low
No
No
120.0.2210.160, 121.0.2277.83 26.01.2024 SB2024012606
#VU85813 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-21387
CWE-451 Medium
No
No
120.0.2210.160, 121.0.2277.83 26.01.2024 SB2024012606
#VU78543 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-38173
CWE-451 Low
No
No
114.0.1901.183, 115.0.1901.183 22.07.2023 SB2023072201
#VU78276 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-36888
CWE-451 Medium
No
No
114.0.1823.82 16.07.2023 SB2023071604


Showing elements 1 - 20 out of 25