VORANT. Threat Intelligence Sign in Get the full feed

Microsoft patches 89 Edge vulnerabilities

medium vulnerability technology

CERT-FR advises that multiple unspecified vulnerabilities in Microsoft Edge before version 151.0.4129.59 could allow attackers to trigger security issues.

CERT-FR issued an advisory covering a large batch of vulnerabilities (CVE-2026-17871 through CVE-2026-17959) affecting Microsoft Edge versions prior to 151.0.4129.59. The advisory does not specify the exact nature, impact, or exploitability of these flaws, only noting that they allow an attacker to cause an unspecified security issue, per Microsoft's own characterization.

No indicators of compromise, threat actor attribution, or evidence of active exploitation are provided in this bulletin. This is a routine vendor patch notification relayed by the French national CERT, directing organizations to Microsoft's security update guide for remediation. Given the lack of detail on severity, exploitability, or in-the-wild activity, this should be treated as a standard patch management advisory rather than an active threat.

Organizations running Microsoft Edge should apply the update to version 151.0.4129.59 or later as per standard patch management practices. No further technical detail is available from this source to assess exploitability or real-world risk beyond the vendor's routine disclosure.

Mentioned in this report

Vulnerabilities CVE-2026-17871CVE-2026-17872CVE-2026-17873CVE-2026-17874CVE-2026-17875CVE-2026-17876CVE-2026-17877CVE-2026-17878CVE-2026-17879CVE-2026-17880

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0967

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free