Vendor advisories

Microsoft Security Response Center

Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.

Current Checked about an hour ago Checked every 6 hours

4,355 advisories

Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.

RSS for these results
Microsoft Security Response CenterCVE-2026-13834
Severity not listed

Chromium: CVE-2026-13834 Insufficient validation of untrusted input in ANGLE

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-14155
Severity not listed

Chromium: CVE-2026-14155 Insufficient policy enforcement in StorageAccessAPI

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13985
Severity not listed

Chromium: CVE-2026-13985 Inappropriate implementation in MediaCapture

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-14154
Severity not listed

Chromium: CVE-2026-14154 Inappropriate implementation in DevTools

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13901
Severity not listed

Chromium: CVE-2026-13901 Insufficient validation of untrusted input in Serial

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13900
Severity not listed

Chromium: CVE-2026-13900 Insufficient validation of untrusted input in Chromecast

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13978
Severity not listed

Chromium: CVE-2026-13978 Insufficient policy enforcement in PageInfo

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Microsoft Security Response CenterCVE-2026-13829
Severity not listed

Chromium: CVE-2026-13829 Insufficient validation of untrusted input in Settings

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Affected productsMicrosoft Edge (Chromium-based)
Fixed versions150.0.4078.48
Vendor guidance

Release Notes

Before you act

Start with the vendor's bulletin.

We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.

Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.

Read how SecurityAlert collects and checks threat intelligence.