Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.8 MS:CVE-2026-11091

Chromium: CVE-2026-11091 Inappropriate implementation in Dawn_MS:CVE-2026-11091

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-10985

Chromium: CVE-2026-10985 Out of bounds read in Skia_MS:CVE-2026-10985

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-10986

Chromium: CVE-2026-10986 Integer overflow in Media_MS:CVE-2026-10986

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 7.5 MS:CVE-2026-11255

Chromium: CVE-2026-11255 Insufficient validation of untrusted input in Storage Access API_MS:CVE-2026-11255

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-11092

Chromium: CVE-2026-11092 Insufficient policy enforcement in DevTools_MS:CVE-2026-11092

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-11039

Chromium: CVE-2026-11039 Uninitialized Use in Skia_MS:CVE-2026-11039

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
MEDIUM 5.7 MS:CVE-2026-11199

Chromium: CVE-2026-11199 Insufficient validation of untrusted input in WebRTC_MS:CVE-2026-11199

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.8 MS:CVE-2026-11147

Chromium: CVE-2026-11147 Use after free in WebML_MS:CVE-2026-11147

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
NONE HACKREAD:8FCB67...

Miasma Malware Hits 32 Red Hat Packages via Compromised GitHub Account_HACKREAD:8FCB67E5B8DC94B34C1007AED8D877F6

32 Red Hat npm packages compromised by Miasma malware expose cloud tokens, CI/CD secrets and developer credentials in supply chain attack.

N/A N/A HACKREAD
NONE MSSECURE:E1EAFC...

Securing CI/CD in an agentic world: Claude Code Github action case_MSSECURE:E1EAFCDAA5DF186F9FDB99A1F9C2ED1C

Microsoft Threat Intelligence discovered that Anthropic's Claude Code GitHub Action could expose CI/CD workflow secrets when AI agents process untr...

N/A N/A MSSECURE