Description
Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code.
Below is a complete list of vulnerabilities:
- A remote code execution vulnerability in Input can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in Blink can be exploited remotely to execute arbitrary code.
- A remote code execution vulnerability in WebMCP can be exploited remotely to execute arbitrary code.
- Denial of service vulnerability in Codecs can be exploited remotely to cause denial of service.
Original advisories
Exploitation
CVE list
- CVE-2026-16804 unknown
- CVE-2026-16805 unknown
- CVE-2026-16806 unknown
- CVE-2026-16807 unknown
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!