ANSSI Flags Multiple Microsoft Edge Flaws
ANSSI advises patching Microsoft Edge before version 151.0.4129.101 to fix 12 vulnerabilities of unspecified impact.
ANSSI (the French national cybersecurity agency) issued an advisory covering twelve vulnerabilities affecting Microsoft Edge versions prior to 151.0.4129.101. The advisory does not specify the exact nature of the security impact, stating only that exploitation could allow an attacker to cause an unspecified security issue, per Microsoft's own bulletin language. No details on exploitation status, attack vectors, or proof-of-concept availability are provided in this advisory.
Each vulnerability is tracked under its own CVE identifier (CVE-2026-76033, -76034, -76035, -76037, -76038, -76040, -76041, -76042, -76043, -76044, -76045, and -76047), all published by Microsoft on 20 August 2026. Organizations running affected Edge versions should apply the vendor-supplied updates referenced in the Microsoft Security Response Center bulletins as soon as feasible. This is a routine vendor patch advisory rerun by ANSSI, with no indication of active exploitation or targeted campaigns.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1071
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free