Vendor advisories

Microsoft Security Response Center

Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.

Current Checked 44 minutes ago Checked every 6 hours

4,355 advisories

Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.

RSS for these results
Microsoft Security Response CenterCVE-2026-13928
Severity not listed

Chromium: CVE-2026-13928 Insufficient validation of untrusted input in Enterprise

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-14001
Severity not listed

Chromium: CVE-2026-14001 Inappropriate implementation in Network

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13925
Severity not listed

Chromium: CVE-2026-13925 Inappropriate implementation in Downloads

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13903
Severity not listed

Chromium: CVE-2026-13903 Insufficient policy enforcement in Bluetooth

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-14109
Severity not listed

Chromium: CVE-2026-14109 Insufficient policy enforcement in Mojo

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13922
Severity not listed

Chromium: CVE-2026-13922 Side-channel information leakage in Paint

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13999
Severity not listed

Chromium: CVE-2026-13999 Inappropriate implementation in Extensions

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13921
Severity not listed

Chromium: CVE-2026-13921 Insufficient validation of untrusted input in DeviceBoundSessionCredentials

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13840
Severity not listed

Chromium: CVE-2026-13840 Insufficient policy enforcement in Canvas

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13867
Severity not listed

Chromium: CVE-2026-13867 Inappropriate implementation in Geolocation

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-14106
Severity not listed

Chromium: CVE-2026-14106 Insufficient validation of untrusted input in Text

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13920
Severity not listed

Chromium: CVE-2026-13920 Insufficient validation of untrusted input in Media

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Before you act

Start with the vendor's bulletin.

We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.

Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.

Read how SecurityAlert collects and checks threat intelligence.