Security Alerts
The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.
Microsoft Patches CVE-2026-12452: Critical Use-After-Free Vulnerability in Edge’s Chromium Downloads
A use-after-free vulnerability in the Downloads component of Chromium, officially designated CVE-2026-12452, has been patched in Microsoft Edge, according to a recent entry in Microsoft’s Security...
Microsoft Edge 149 Patches Critical Chromium WebAuth Use-After-Free (CVE-2026-12443) – How to Verify Your Version
Microsoft has pushed out an emergency fix for Microsoft Edge, addressing a serious memory corruption flaw tracked as CVE-2026-12443 that originates from the Chromium open-source Web Authentication...
Critical Chromium WebRTC Flaw CVE-2026-12447 Fixed in Google Chrome—Here’s Why Edge Users Are Also at Risk
Microsoft has confirmed that a serious vulnerability in the open-source Chromium browser engine, tracked as CVE-2026-12447, affects Microsoft Edge. The flaw, buried in the WebRTC component used for...
Microsoft Edge Emergency Update Patches Critical Chromium Zero-Day Vulnerability CVE-2026-12441
Microsoft has published a security advisory for a newly discovered vulnerability that directly impacts Microsoft Edge, the company’s Chromium-based browser. The flaw, tracked as CVE-2026-12441,...
Edge Patches Critical DigitalCredentials Use-After-Free (CVE-2026-12451) Inherited from Chromium
Microsoft has confirmed that the latest Edge stable channel update resolves CVE-2026-12451, a high-severity use-after-free vulnerability in the browser’s DigitalCredentials component. The flaw,...
Microsoft Edge June 2026 Update Closes Password Disclosure Flaw (CVE-2026-12446)
Microsoft has issued a security patch for its Edge browser, addressing a Chromium-based vulnerability that could allow unauthorized access to saved passwords. The flaw, designated CVE-2026-12446, is...
Microsoft Edge June 2026 Patch Closes High-Severity Chromium Vulnerability CVE-2026-12445
Microsoft has rolled out its June 2026 security update for Microsoft Edge, delivering a critical patch for CVE-2026-12445, a high-severity vulnerability lurking in the Chromium open-source code that...
Critical CVE-2026-12440 in Chromium DigitalCredentials Forces Emergency Edge Patch
{ "title": "Critical CVE-2026-12440 in Chromium DigitalCredentials Forces Emergency Edge Patch", "content": "Microsoft confirmed on June 14, 2026, that Microsoft Edge users face an elevated risk...
CVE-2026-12439: Critical Chromium Bug in Microsoft Edge Prompts Urgent Patch — Are You Protected?
Microsoft Edge users should immediately check their browser version. A critical vulnerability in the Chromium engine, tracked as CVE-2026-12439, has been patched in Microsoft’s June 2026 Edge...
CVE-2026-10275: Buffer Overflow in OpenSC pkcs11-tool Puts Smart Cards at Risk
A buffer overflow vulnerability in OpenSC’s pkcs11-tool utility has sent the smart card security community into a familiar state of alert. The bug, assigned CVE-2026-10275, was disclosed earlier...
Critical QEMU/KVM Heap Overflow CVE-2026-48914 Lets Malicious VMs Crash Host Systems
A severe heap buffer overflow vulnerability in QEMU's virtio-blk device implementation can be exploited by a malicious virtual machine with elevated privileges to crash the host process, causing...
CVE-2026-8376 heap overflow in 32-bit Perl regex engine enables remote code execution on Windows.
A newly published vulnerability in the Perl programming language could give attackers a foothold on thousands of Windows machines, especially those still running 32-bit binaries. Microsoft's Security...