Kaspersky ID:
KLA91281
Дата обнаружения:
14/09/2026
Обновлено:
15/09/2026

Описание

Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to bypass security restrictions, execute arbitrary code, cause denial of service, obtain sensitive information.

Below is a complete list of vulnerabilities:

  1. Security vulnerability can be exploited to bypass security restrictions.
  2. A remote code execution vulnerability in Payments can be exploited remotely to execute arbitrary code.
  3. Denial of service vulnerability in WebGL can be exploited remotely to cause denial of service.
  4. A remote code execution vulnerability in Sharing can be exploited remotely to execute arbitrary code.
  5. A remote code execution vulnerability in ANGLE can be exploited remotely to execute arbitrary code.
  6. Information disclosure vulnerability in ServiceWorker can be exploited to obtain sensitive information.
  7. Denial of service vulnerability in Passwords can be exploited remotely to cause denial of service.
  8. Denial of service vulnerability in Chromoting can be exploited remotely to cause denial of service.
  9. Information disclosure vulnerability in Core can be exploited to obtain sensitive information.
  10. A remote code execution vulnerability in Printing can be exploited remotely to execute arbitrary code.
  11. Information disclosure vulnerability in ControlledFrame can be exploited to obtain sensitive information.
  12. A remote code execution vulnerability in Web Authentication can be exploited remotely to execute arbitrary code.
  13. A remote code execution vulnerability in Core can be exploited remotely to execute arbitrary code.
  14. Information disclosure vulnerability in Extensions can be exploited to obtain sensitive information.
  15. A remote code execution vulnerability in Aura can be exploited remotely to execute arbitrary code.
  16. Information disclosure vulnerability in Navigation can be exploited to obtain sensitive information.
  17. A remote code execution vulnerability in V8 can be exploited remotely to execute arbitrary code.
  18. A remote code execution vulnerability in Views can be exploited remotely to execute arbitrary code.
  19. A remote code execution vulnerability in Chromecast can be exploited remotely to execute arbitrary code.
  20. Information disclosure vulnerability in Editing can be exploited to obtain sensitive information.
  21. A remote code execution vulnerability in Codecs can be exploited remotely to execute arbitrary code.
  22. Information disclosure vulnerability in WebMCP can be exploited to obtain sensitive information.
  23. A remote code execution vulnerability in Browser can be exploited remotely to execute arbitrary code.
  24. A remote code execution vulnerability in WebPackaging can be exploited remotely to execute arbitrary code.
  25. Denial of service vulnerability in ANGLE can be exploited remotely to cause denial of service.
  26. Denial of service vulnerability in SiteIsolation can be exploited remotely to cause denial of service.
  27. A remote code execution vulnerability in WebRTC can be exploited remotely to execute arbitrary code.
  28. Information disclosure vulnerability in Transactions Platform can be exploited to obtain sensitive information.
  29. Security vulnerability in Extensions can be exploited to bypass security restrictions.
  30. A remote code execution vulnerability in Passwords can be exploited remotely to execute arbitrary code.
  31. Security vulnerability in Accessibility can be exploited to bypass security restrictions.
  32. A remote code execution vulnerability in Chromoting can be exploited remotely to execute arbitrary code.
  33. Denial of service vulnerability in V8 can be exploited remotely to cause denial of service.
  34. Information disclosure vulnerability in CORS can be exploited to obtain sensitive information.
  35. Security vulnerability in LocalNetworkAccess can be exploited to bypass security restrictions.
  36. A remote code execution vulnerability in WebGL can be exploited remotely to execute arbitrary code.
  37. A remote code execution vulnerability in DevTools can be exploited remotely to execute arbitrary code.
  38. Information disclosure vulnerability in Enterprise can be exploited to obtain sensitive information.
  39. A remote code execution vulnerability in Input can be exploited remotely to execute arbitrary code.
  40. Denial of service vulnerability in Tint can be exploited remotely to cause denial of service.
  41. A remote code execution vulnerability in DataTransfer can be exploited remotely to execute arbitrary code.
  42. Information disclosure vulnerability in Downloads can be exploited to obtain sensitive information.
  43. Denial of service vulnerability in Chromium can be exploited remotely to cause denial of service.
  44. A remote code execution vulnerability in Extensions can be exploited remotely to execute arbitrary code.
  45. Denial of service vulnerability in FedCM can be exploited remotely to cause denial of service.
  46. Denial of service vulnerability in Media can be exploited remotely to cause denial of service.
  47. Denial of service vulnerability in Extensions can be exploited remotely to cause denial of service.
  48. Information disclosure vulnerability in Scroll can be exploited to obtain sensitive information.
  49. A remote code execution vulnerability in Cast can be exploited remotely to execute arbitrary code.
  50. A remote code execution vulnerability in Updater can be exploited remotely to execute arbitrary code.
  51. Information disclosure vulnerability in Frames can be exploited to obtain sensitive information.
  52. A remote code execution vulnerability in Receiver can be exploited remotely to execute arbitrary code.
  53. Denial of service vulnerability in Safebrowsing can be exploited remotely to cause denial of service.
  54. A remote code execution vulnerability in Platform can be exploited remotely to execute arbitrary code.
  55. Denial of service vulnerability in XML can be exploited remotely to cause denial of service.
  56. Denial of service vulnerability in Interstitials can be exploited remotely to cause denial of service.
  57. Denial of service vulnerability in FileAPI can be exploited remotely to cause denial of service.
  58. Denial of service vulnerability in Network can be exploited remotely to cause denial of service.
  59. A remote code execution vulnerability in FileAPI can be exploited remotely to execute arbitrary code.
  60. Cross-site scripting (XSS) vulnerability in SanitizerAPI can be exploited to perform cross-site scripting attack.
  61. Denial of service vulnerability in Rust can be exploited remotely to cause denial of service.
  62. Information disclosure vulnerability in Passwords can be exploited to obtain sensitive information.

Первичный источник обнаружения

Эксплуатация

Public exploits exist for this vulnerability.

Связанные продукты

Список CVE

  • CVE-2026-87429
    high
  • CVE-2026-87430
    critical
  • CVE-2026-87431
    critical
  • CVE-2026-87432
    warning
  • CVE-2026-87433
    critical
  • CVE-2026-87434
    warning
  • CVE-2026-87435
    high
  • CVE-2026-87436
    high
  • CVE-2026-87437
    high
  • CVE-2026-87439
    high
  • CVE-2026-87440
    critical
  • CVE-2026-87441
    high
  • CVE-2026-87442
    warning
  • CVE-2026-87443
    high
  • CVE-2026-87444
    critical
  • CVE-2026-87445
    high
  • CVE-2026-87446
    high
  • CVE-2026-87447
    high
  • CVE-2026-87448
    critical
  • CVE-2026-87449
    warning
  • CVE-2026-87450
    critical
  • CVE-2026-87451
    warning
  • CVE-2026-87452
    warning
  • CVE-2026-87453
    high
  • CVE-2026-87454
    high
  • CVE-2026-87455
    critical
  • CVE-2026-87456
    warning
  • CVE-2026-87457
    critical
  • CVE-2026-87458
    high
  • CVE-2026-87459
    high
  • CVE-2026-87460
    critical
  • CVE-2026-87461
    warning
  • CVE-2026-87462
    high
  • CVE-2026-87463
    warning
  • CVE-2026-87465
    warning
  • CVE-2026-87466
    warning
  • CVE-2026-87467
    critical
  • CVE-2026-87468
    high
  • CVE-2026-87469
    warning
  • CVE-2026-87470
    critical
  • CVE-2026-87471
    critical
  • CVE-2026-87472
    warning
  • CVE-2026-87473
    high
  • CVE-2026-87474
    critical
  • CVE-2026-87475
    high
  • CVE-2026-87476
    high
  • CVE-2026-87477
    high
  • CVE-2026-87478
    high
  • CVE-2026-87479
    critical
  • CVE-2026-87480
    critical
  • CVE-2026-87484
    high
  • CVE-2026-87485
    warning
  • CVE-2026-87487
    critical
  • CVE-2026-87489
    critical
  • CVE-2026-87490
    high
  • CVE-2026-87492
    critical
  • CVE-2026-87493
    high
  • CVE-2026-87494
    critical
  • CVE-2026-87495
    warning
  • CVE-2026-87496
    high
  • CVE-2026-87497
    warning
  • CVE-2026-87498
    warning
  • CVE-2026-87499
    critical
  • CVE-2026-87500
    critical
  • CVE-2026-87501
    high
  • CVE-2026-87502
    warning
  • CVE-2026-87504
    critical
  • CVE-2026-87505
    critical
  • CVE-2026-87506
    critical
  • CVE-2026-87507
    high
  • CVE-2026-87508
    warning
  • CVE-2026-87509
    critical
  • CVE-2026-87510
    critical
  • CVE-2026-87511
    warning
  • CVE-2026-87512
    critical
  • CVE-2026-87513
    high
  • CVE-2026-87514
    critical
  • CVE-2026-87515
    high
  • CVE-2026-87516
    warning
  • CVE-2026-87519
    high
  • CVE-2026-87521
    warning
  • CVE-2026-87523
    high
  • CVE-2026-87524
    critical
  • CVE-2026-87525
    warning
  • CVE-2026-87526
    critical
  • CVE-2026-87527
    critical
  • CVE-2026-87528
    critical
  • CVE-2026-87529
    critical
  • CVE-2026-87530
    critical
  • CVE-2026-87531
    warning
  • CVE-2026-87532
    high
  • CVE-2026-87533
    critical
  • CVE-2026-87535
    high
  • CVE-2026-87537
    critical
  • CVE-2026-87538
    warning
  • CVE-2026-87539
    warning
  • CVE-2026-87540
    high
  • CVE-2026-87541
    high
  • CVE-2026-87542
    critical
  • CVE-2026-87543
    warning
  • CVE-2026-87544
    critical
  • CVE-2026-87546
    warning
  • CVE-2026-87547
    critical
  • CVE-2026-87548
    warning
  • CVE-2026-87549
    high
  • CVE-2026-87550
    warning
  • CVE-2026-87551
    warning
  • CVE-2026-87553
    critical
  • CVE-2026-87554
    critical
  • CVE-2026-87556
    warning
  • CVE-2026-87557
    warning
  • CVE-2026-87558
    critical
  • CVE-2026-87559
    warning
  • CVE-2026-87560
    warning
  • CVE-2026-87561
    warning
  • CVE-2026-87562
    warning
  • CVE-2026-87563
    warning
  • CVE-2026-87564
    warning
  • CVE-2026-87565
    high
  • CVE-2026-87566
    high
  • CVE-2026-87567
    warning
  • CVE-2026-87568
    warning
  • CVE-2026-87569
    critical
  • CVE-2026-87570
    critical
  • CVE-2026-87571
    high
  • CVE-2026-87572
    critical
  • CVE-2026-87573
    warning
  • CVE-2026-87574
    warning
  • CVE-2026-87575
    high
  • CVE-2026-87577
    warning
  • CVE-2026-87578
    critical
  • CVE-2026-87579
    critical
  • CVE-2026-87580
    high
  • CVE-2026-87581
    critical
  • CVE-2026-87582
    critical
  • CVE-2026-87583
    high
  • CVE-2026-87584
    high
  • CVE-2026-87585
    critical
  • CVE-2026-87586
    warning
  • CVE-2026-87587
    critical
  • CVE-2026-87588
    critical
  • CVE-2026-87589
    high
  • CVE-2026-87590
    high
  • CVE-2026-87591
    high
  • CVE-2026-87592
    warning
  • CVE-2026-87593
    high
  • CVE-2026-87594
    high
  • CVE-2026-87596
    warning
  • CVE-2026-87598
    warning
  • CVE-2026-87599
    high
  • CVE-2026-87600
    high
  • CVE-2026-87601
    critical
  • CVE-2026-87602
    warning
  • CVE-2026-87603
    high
  • CVE-2026-87604
    critical
  • CVE-2026-87605
    high
  • CVE-2026-87606
    critical
  • CVE-2026-87608
    critical
  • CVE-2026-87609
    critical
  • CVE-2026-87610
    high
  • CVE-2026-87611
    warning
  • CVE-2026-87612
    critical
  • CVE-2026-87613
    critical
  • CVE-2026-87614
    warning
  • CVE-2026-87615
    high
  • CVE-2026-87616
    critical
  • CVE-2026-87617
    critical
  • CVE-2026-87618
    critical
  • CVE-2026-87619
    warning
  • CVE-2026-87620
    high
  • CVE-2026-87621
    critical
  • CVE-2026-87622
    warning
  • CVE-2026-87623
    high
  • CVE-2026-87624
    warning
  • CVE-2026-87625
    critical
  • CVE-2026-87626
    high
  • CVE-2026-87627
    high
  • CVE-2026-87628
    critical
  • CVE-2026-87629
    high
  • CVE-2026-87630
    warning
  • CVE-2026-87631
    high
  • CVE-2026-87632
    warning
  • CVE-2026-87633
    critical
  • CVE-2026-87634
    critical
  • CVE-2026-87635
    high
  • CVE-2026-87636
    critical
  • CVE-2026-87637
    critical
  • CVE-2026-87638
    critical
  • CVE-2026-87639
    critical
  • CVE-2026-87641
    warning
  • CVE-2026-87642
    warning
  • CVE-2026-87644
    critical
  • CVE-2026-87645
    high
  • CVE-2026-87646
    critical
  • CVE-2026-87647
    warning
  • CVE-2026-87648
    critical
  • CVE-2026-87649
    high
  • CVE-2026-87650
    critical
  • CVE-2026-87651
    warning
  • CVE-2026-87652
    warning
  • CVE-2026-87653
    high
  • CVE-2026-87654
    critical
  • CVE-2026-87655
    high
  • CVE-2026-87656
    high
  • CVE-2026-87657
    warning
  • CVE-2026-87658
    warning

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Do you want to save your changes?
Your message has been sent successfully.