Kaspersky ID:
KLA91070
Дата обнаружения:
21/05/2026
Обновлено:
25/05/2026

Описание

Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. A remote code execution vulnerability in Tab Groups can be exploited remotely to execute arbitrary code.
  2. A remote code execution vulnerability in XR can be exploited remotely to execute arbitrary code.
  3. Denial of service vulnerability in GPU can be exploited remotely to cause denial of service.
  4. A remote code execution vulnerability in DOM can be exploited remotely to execute arbitrary code.
  5. Denial of service vulnerability in Chromecast can be exploited remotely to cause denial of service.
  6. A remote code execution vulnerability in Payments can be exploited remotely to execute arbitrary code.
  7. Denial of service vulnerability in GFX can be exploited remotely to cause denial of service.
  8. A remote code execution vulnerability in WebRTC can be exploited remotely to execute arbitrary code.
  9. A remote code execution vulnerability in QUIC can be exploited remotely to execute arbitrary code.
  10. Denial of service vulnerability in Input can be exploited remotely to cause denial of service.
  11. Security vulnerability in ServiceWorker can be exploited to bypass security restrictions.
  12. A remote code execution vulnerability in GPU can be exploited remotely to execute arbitrary code.
  13. Denial of service vulnerability in WebRTC can be exploited remotely to cause denial of service.
  14. Denial of service vulnerability in UI can be exploited remotely to cause denial of service.
  15. Security vulnerability in Service Worker can be exploited to bypass security restrictions.
  16. A remote code execution vulnerability in Downloads can be exploited remotely to execute arbitrary code.

Первичный источник обнаружения

Эксплуатация

Связанные продукты

Список CVE

  • CVE-2026-8520
    critical
  • CVE-2026-8521
    critical
  • CVE-2026-8522
    critical
  • CVE-2026-9110
    warning
  • CVE-2026-9111
    critical
  • CVE-2026-9112
    critical
  • CVE-2026-9113
    warning
  • CVE-2026-9114
    critical
  • CVE-2026-9115
    warning
  • CVE-2026-9116
    warning
  • CVE-2026-9117
    critical
  • CVE-2026-9118
    critical
  • CVE-2026-9119
    critical
  • CVE-2026-9120
    critical
  • CVE-2026-9121
    critical
  • CVE-2026-9122
    high
  • CVE-2026-9123
    critical
  • CVE-2026-9124
    high
  • CVE-2026-9126
    critical

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Do you want to save your changes?
Your message has been sent successfully.