Description:
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge (Chromium-based). A remote attacker could entice a user to open a web page with specially crafted content on a vulnerable browser to exploit the vulnerability.
 
Affected Systems:
- Microsoft Edge (Chromium-based) prior to version 100.0.1185.29
 
 
Impact:
Successful exploitation of the vulnerabilities could lead to remote code execution, elevation of privilege, information disclosure or spoofing on an affected system.
 
Recommendation:
Users of affected systems should update Microsoft Edge (Chromium-based) to version 100.0.1185.29 or later to address the issue.
The list of security updates can be found at:
https://docs.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#april-1-2022
 
More Information:
- https://docs.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#april-1-2022
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1125
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1127 (to CVE-2022-1131)
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1133 (to CVE-2022-1139)
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1143
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1145
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1146
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-24475
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-24523
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26891
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26894
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26895
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26900
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26908
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26909
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-26912