logo

Multiple Vulnerabilities in Microsoft Edge (Chromium-based) Could Allow for Arbitrary Code Execution

ID: 5055e1ac-1053-5334-aeea-41d01a017471

STIX ID: report--5055e1ac-1053-5334-aeea-41d01a017471

Feed Name: CISecurity.org Advisories

Threat Score
70/100

Date Published: 2024-10-18

Date Updated: 2026-04-27

...
...

Multiple critical vulnerabilities were disclosed in Microsoft Edge (Chromium-based), including several remote code execution flaws (heap-based buffer overflows, integer/integer wraparound, buffer over-read, type confusion, use-after-free) and a spoofing vulnerability, referenced by CVE-2024-43587, CVE-2024-43566, CVE-2024-43578, CVE-2024-43579, CVE-2024-43595, CVE-2024-43596, CVE-2024-49023 and CVE-2024-43580; successful exploitation could permit arbitrary code execution in the context of the logged-on user, typically requiring a victim to click a malicious link or more preparatory actions by an attacker.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.