Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Browser — Vulnerabilities & Security Advisories 31

All 31 CVE vulnerabilities found in Browser, with AI-generated Chinese analysis, references, and POCs.

This page catalogs vulnerability aggregations for the vendor Browser, focusing on common weakness classifications and related tags. It compiles security issues discovered in web browsers, including zero-day exploits, privilege escalation flaws, cross-site scripting errors, and memory corruption vulnerabilities. The data covers reported vulnerabilities from January 2020 through December 2023, providing a comprehensive historical view of security trends in this software category. Here, users can track specific vendor advisories to understand the timeline of disclosure and remediation efforts. You can also analyze specific weakness classes, such as buffer overflows or injection attacks, to see how they manifest within browser architectures. Additionally, the resource allows you to look up a particular product version’s vulnerability history, identifying recurring issues or patterns in patch management. This aggregation serves as a centralized reference for security researchers and developers aiming to assess risk profiles. By examining the collective data, stakeholders can gain insights into the maturity of browser security practices and identify potential areas for improvement. The information is structured to facilitate easy navigation through complex vulnerability landscapes without overwhelming the user with unsorted data points. Each entry is contextualized to highlight the severity and impact of the flaws, aiding in prioritization of security updates. This page does not endorse any specific vendor but presents objective data for analysis. It is designed for technical audiences who require detailed information on software security postures. The content is regularly updated to reflect new disclosures, ensuring the accuracy and relevance of the provided information for ongoing security assessments.

Vendor: Microsoft Corporation

CVE IDTitleCVSSSeverityPublished
CVE-2026-52842 Lightpanda:URL parser misidentifies page origin for URLs containing @ in the path - Same-Origin Policy bypass CWE-346 9.3 Critical2026-07-15
CVE-2026-52843 Lightpanda: fetch() and XMLHttpRequest attach session cookies to cross-origin requests regardless of credentials mode CWE-346 9.3 Critical2026-07-15
CVE-2025-9201 Lenovo Browser 安全漏洞 CWE-427 7.8 High2025-09-11
CVE-2025-6248 Lenovo Browser 安全漏洞 CWE-79 7.4 High2025-07-17
CVE-2025-6152 Steel Browser files.routes.ts handleFileUpload path traversal CWE-22 6.3 Medium2025-06-17
CVE-2023-26226 A use after free memory corruption issue exists in Yandex Browser for Desktop prior to version 24.4.0.682 CWE-416 9.8AICriticalAI2025-05-30
CVE-2021-25262 Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homograph attack. CWE-116 4.3AIMediumAI2025-05-21
CVE-2024-6473 DLL Hijacking in Yandex Browser CWE-426 7.8AIHighAI2024-09-03
CVE-2019-13322 Xiaomi Mi6 Browser 输入验证错误漏洞 CWE-356 8.8 -2020-02-10
CVE-2019-13321 Xiaomi Mi6 Browser 安全漏洞 CWE-732 8.0 -2020-02-10
CVE-2019-6743 Xiaomi Mi6 Browser 缓冲区错误漏洞 CWE-787 8.8 -2019-06-03
CVE-2017-0137 Microsoft Edge Scripting Engine组件安全漏洞 7.5 -2017-03-17
CVE-2017-0151 Microsoft Edge Scripting Engine组件缓冲区错误漏洞 7.5 -2017-03-17
CVE-2017-0150 Microsoft Edge Scripting Engine组件安全漏洞 7.5 -2017-03-17
CVE-2017-0141 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0138 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0009 Microsoft Internet Explorer和Edge 信息泄露漏洞 4.3 -2017-03-17
CVE-2017-0136 Microsoft Edge Scripting Engine组件安全漏洞 7.5 -2017-03-17
CVE-2017-0134 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0133 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0132 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0131 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0094 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0071 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0070 Microsoft Edge Scripting Engine组件安全漏洞 7.5 -2017-03-17
CVE-2017-0067 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0035 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0033 Microsoft Internet Explorer和Edge 输入验证漏洞 3.1 -2017-03-17
CVE-2017-0032 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17
CVE-2017-0015 Microsoft Edge Scripting Engine 安全漏洞 7.5 -2017-03-17

All 31 known CVE vulnerabilities affecting Browser with full Chinese analysis, references, and POCs where available.