Vendor advisories

Microsoft Security Response Center

Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.

Current Checked 3 hours ago Checked every 6 hours

4,355 advisories

Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.

RSS for these results
Microsoft Security Response CenterCVE-2026-17997
Severity not listed

Chromium: CVE-2026-17997 Inappropriate implementation in Passwords

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17996
Severity not listed

Chromium: CVE-2026-17996 Inappropriate implementation in Browser

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17991
Severity not listed

Chromium: CVE-2026-17991 Insufficient validation of untrusted input in AI

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17990
Severity not listed

Chromium: CVE-2026-17990 Insufficient validation of untrusted input in WebAuthn

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17988
Severity not listed

Chromium: CVE-2026-17988 Insufficient validation of untrusted input in Navigation

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17987
Severity not listed

Chromium: CVE-2026-17987 Insufficient validation of untrusted input in Notifications

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17986
Severity not listed

Chromium: CVE-2026-17986 Insufficient policy enforcement in Bluetooth

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17985
Severity not listed

Chromium: CVE-2026-17985 Insufficient policy enforcement in Speech

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17984
Severity not listed

Chromium: CVE-2026-17984 Inappropriate implementation in Browser

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17983
Severity not listed

Chromium: CVE-2026-17983 Incorrect security UI in Global Media Controls

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17982
Severity not listed

Chromium: CVE-2026-17982 Insufficient validation of untrusted input in Cast

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17978
Severity not listed

Chromium: CVE-2026-17978 Side-channel information leakage in WebCodecs

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-17974
Severity not listed

Chromium: CVE-2026-17974 Insufficient policy enforcement in DevTools

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions151.0.4129.59
Vendor guidance

Release Notes

Before you act

Start with the vendor's bulletin.

We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.

Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.

Read how SecurityAlert collects and checks threat intelligence.