Microsoft
Microsoft Edge
See the latest tracked release, confirm when it was published, and subscribe for update emails.
152.0.4191.62
- Release date
- September 02, 2026
- Security status
- 45 high-severity CVEs tracked in the last 90 days. Current version impact is unclear.
Source
Vendor Release Information
Public release notes are linked for the latest stored release.
Release history
See the latest published releases stored for this product.
| Version | Published | Notes |
|---|---|---|
| 152.0.4191.62 | 2026-09-02 | Release Notes |
| 152.0.4191.53 | 2026-08-27 | Release Notes |
| 151.0.4129.107 | 2026-08-24 | Release Notes |
| 151.0.4129.101 | 2026-08-20 | Release Notes |
| 151.0.4129.93 | 2026-08-17 | Release Notes |
| 151.0.4129.86 | 2026-08-14 | Release Notes |
| 151.0.4129.78 | 2026-08-10 | Release Notes |
| 151.0.4129.72 | 2026-08-06 | Release Notes |
| 151.0.4129.59 | 2026-07-31 | Release Notes |
| 150.0.4078.105 | 2026-07-27 | Release Notes |
| 150.0.4078.99 | 2026-07-24 | Release Notes |
| 150.0.4078.96 | 2026-07-23 | Release Notes |
| 150.0.4078.83 | 2026-07-17 | Release Notes |
| 150.0.4078.65 | 2026-07-09 | Release Notes |
| 150.0.4078.50 | 2026-07-02 | Release Notes |
| 150.0.4078.48 | 2026-07-02 | Release Notes |
| 149.0.4022.98 | 2026-06-26 | Release Notes |
| 149.0.4022.96 | 2026-06-25 | Release Notes |
| 149.0.4022.80 | 2026-06-18 | Release Notes |
| 149.0.4022.69 | 2026-06-12 | Release Notes |
| 149.0.4022.62 | 2026-06-09 | Release Notes |
| 149.0.4022.52 | 2026-06-04 | Release Notes |
| 148.0.3967.96 | 2026-05-28 | Release Notes |
| 148.0.3967.83 | 2026-05-21 | Release Notes |
| 148.0.3967.70 | 2026-05-15 | Release Notes |
| 148.0.3967.54 | 2026-05-07 | Release Notes |
| 147.0.3912.98 | 2026-04-30 | Release Notes |
| 147.0.3912.86 | 2026-04-24 | Release Notes |
| 147.0.3912.72 | 2026-04-16 | Release Notes |
| 147.0.3912.60 | 2026-04-10 | Release Notes |
| 146.0.3856.109 | 2026-04-06 | Release Notes |
| 146.0.3856.97 | 2026-04-01 | Release Notes |
Vulnerability tracking
versionPing monitors CVEs for this product. Matching CVEs are listed below. We only display CVEs with a CVSS score of 7.0 or higher that were published within the last 90 days.
Affected status is inferred from published affected version ranges where available. Always verify against the vendor advisory before making production decisions.
| CVE | Severity | Published | Status | Summary |
|---|---|---|---|---|
| CVE-2026-72984 | HIGH (8.8) | 2026-08-28 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-72970 | HIGH (8.3) | 2026-08-14 | Current versionnot affected | Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-66322 | HIGH (7.1) | 2026-08-03 | Current versionnot affected | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-65802 | HIGH (7.4) | 2026-08-03 | Current versionnot affected | External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-66315 | HIGH (7.5) | 2026-08-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-66321 | HIGH (7.4) | 2026-08-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-66318 | HIGH (8.1) | 2026-08-03 | Current versionnot affected | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-57990 | HIGH (7.4) | 2026-07-26 | Current versionunclear | Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-57989 | HIGH (7.4) | 2026-07-26 | Current versionnot affected | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-58596 | HIGH (8.3) | 2026-07-12 | Current versionnot affected | Untrusted pointer dereference in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network. Affected versions
|
| CVE-2026-58281 | HIGH (8.3) | 2026-07-11 | Current versionnot affected | Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58525 | HIGH (8.2) | 2026-07-08 | Current versionnot affected | Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network. Affected versions
|
| CVE-2026-58298 | HIGH (7.2) | 2026-07-03 | Current versionnot affected | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-58297 | HIGH (7.1) | 2026-07-03 | Current versionnot affected | Exposure of private personal information to an unauthorized actor in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-58296 | HIGH (7.1) | 2026-07-03 | Current versionnot affected | Exposure of private personal information to an unauthorized actor in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-58295 | HIGH (8.3) | 2026-07-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network. Affected versions
|
| CVE-2026-58294 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58293 | HIGH (8.1) | 2026-07-03 | Current versionnot affected | External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58292 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58290 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58289 | CRITICAL (9.0) | 2026-07-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58288 | HIGH (8.3) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58286 | HIGH (8.1) | 2026-07-03 | Current versionnot affected | Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-58285 | HIGH (8.3) | 2026-07-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58284 | HIGH (8.3) | 2026-07-03 | Current versionnot affected | Improper authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58276 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57991 | HIGH (7.4) | 2026-07-03 | Current versionnot affected | Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network. Affected versions
|
| CVE-2026-57986 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57981 | HIGH (8.8) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57977 | HIGH (7.1) | 2026-07-03 | Current versionnot affected | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-57974 | HIGH (8.8) | 2026-07-03 | Current versionnot affected | Integer overflow or wraparound in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58299 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Time-of-check time-of-use (toctou) race condition in Microsoft Edge for Android allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58287 | HIGH (8.3) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-58283 | HIGH (8.1) | 2026-07-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-58282 | HIGH (8.1) | 2026-07-03 | Current versionnot affected | Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-57993 | HIGH (7.4) | 2026-07-03 | Current versionnot affected | Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network. Affected versions
|
| CVE-2026-57992 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57988 | HIGH (7.1) | 2026-07-03 | Current versionnot affected | Relative path traversal in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57985 | HIGH (7.6) | 2026-07-03 | Current versionnot affected | Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57984 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-57983 | HIGH (8.7) | 2026-07-03 | Current versionnot affected | Improper authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network. Affected versions
|
| CVE-2026-57975 | HIGH (7.5) | 2026-07-03 | Current versionnot affected | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-56645 | HIGH (8.8) | 2026-07-03 | Current versionnot affected | Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. Affected versions
|
| CVE-2026-50521 | HIGH (8.3) | 2026-07-01 | Current versionnot affected | Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network. Affected versions
|
| CVE-2026-32208 | HIGH (8.8) | 2026-06-19 | Current versionunclear | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Entra ID allows an authorized attacker to perform spoofing over a network. Affected versions
|