on February 5, 2026 at 8:00 am — CVE-2026-0391 Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network.
on February 5, 2026 at 7:27 pm — Chromium: CVE-2026-1861 Heap buffer overflow in libvpx
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.
on February 5, 2026 at 7:27 pm — Chromium: CVE-2026-1861 Heap buffer overflow in libvpx Read More »
on January 30, 2026 at 3:20 am — Chromium: CVE-2026-1504 Inappropriate implementation in Background Fetch API
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.
on January 26, 2026 at 8:00 am — CVE-2026-21509 Microsoft Office Security Feature Bypass Vulnerability
Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a security feature locally.
on January 23, 2026 at 8:00 am — Chromium: CVE-2026-1220 Race in V8
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2024 ) for more information.
on January 23, 2026 at 8:00 am — Chromium: CVE-2026-1220 Race in V8 Read More »
on January 22, 2026 at 8:00 am — CVE-2026-24304 Azure Resource Manager Elevation of Privilege Vulnerability
Improper access control in Azure Resource Manager allows an authorized attacker to elevate privileges over a network.
on January 22, 2026 at 8:00 am — CVE-2026-24306 Azure Front Door Elevation of Privilege Vulnerability
Improper access control in Azure Front Door (AFD) allows an unauthorized attacker to elevate privileges over a network.
on January 22, 2026 at 8:00 am — CVE-2026-21524 Azure Data Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Azure Data Explorer allows an unauthorized attacker to disclose information over a network.