CYBERSECURITYTRACKER
TRACKING3,812 stories701 vuln stories
Patch Day month

March 2026 vulnerabilities

A defender-focused view of 886 vulnerabilities across 1,627 returned patch records from 4 vendors. Filter the complete month, or browse the static page trail without JavaScript.

1,627all patch recordsClear filters66criticalShow these records0Microsoft exploitation detectedShow these records2Microsoft in CISA KEVShow these records184tracked hereShow these records

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as “no.” “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An EPSS percentage is the global 30-day exploitation probability in the wild, not specific to you.

Page 9 of 9 · records 1,601–1,627 of 1,627

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2026-3926 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3926 Out of bounds read in V8
CVE-2026-3925 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3925 Incorrect security UI in LookalikeChecks
CVE-2026-3924 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3924 Use after free in WindowDialog
CVE-2026-3923 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3923 Use after free in WebMIDI
CVE-2026-3922 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3922 Use after free in MediaStream
CVE-2026-3921 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3921 Use after free in TextEncoding
CVE-2026-3920 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3920 Out of bounds memory access in WebML
CVE-2026-3919 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3919 Use after free in Extensions
CVE-2026-3918 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3918 Use after free in WebMCP
CVE-2026-3917 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3917 Use after free in Agents
CVE-2026-3916 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3916 Out of bounds read in Web Speech
CVE-2026-3915 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3915 Heap buffer overflow in WebML
CVE-2026-3914 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3914 Integer overflow in WebML
CVE-2026-3913 ↗2026-03-13Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3913 Heap buffer overflow in WebML
CVE-2026-3537 ↗2026-03-11Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3537 Object lifecycle issue in PowerVR
CVE-2026-3545 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3545 Insufficient data validation in Navigation
CVE-2026-3544 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3544 Heap buffer overflow in WebCodecs
CVE-2026-3543 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3543 Inappropriate implementation in V8
CVE-2026-3542 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3542 Inappropriate implementation in WebAssembly
CVE-2026-3541 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3541 Inappropriate implementation in CSS
CVE-2026-3540 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3540 Inappropriate implementation in WebAudio
CVE-2026-3539 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-bandChromium: CVE-2026-3539 Object lifecycle issue in DevTools
CVE-2026-3538 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3538 Integer overflow in Skia
CVE-2026-3536 ↗2026-03-06Microsoft Edge (Chromium-based)N/AOut-of-band0%Chromium: CVE-2026-3536 Integer overflow in ANGLE
CVE-2026-23385 ↗2026-08-09azl3 kernel 6.6.150.1-1 on Azure Linux 3.0N/AOut-of-bandnetfilter: nf_tables: clone set on flush only

Cross-vendor patches

VendorCVESeverityProductFixed versionPatchAdvisory
Red HatCVE-2025-45768UnratedRed Hat Quay 3.14registry.redhat.io/quay/quay-rhel8@sha256:05cc4b4410de27e32897492effb21362d8c1bc8cc56e9408fc9a19f9f3149899_arm64Patch ↗Advisory ↗
Red HatCVE-2022-32296UnratedRed Hat AI Inference Server 3.2registry.redhat.io/rhaiis/model-opt-cuda-rhel9@sha256:2fd4f343235f7e896a70169fc4b856343d639c65bec77c1883cbd8210caf3a92_amd64Patch ↗Advisory ↗