Microsoft released an upgrade for the Edge browser on 23 February 2024. The latest stable version of Microsoft Edge is 122.0.2365.52. This is the first release in build 122 of the Microsoft Edge browser.
We are now on build 122 of the Microsoft Edge browser.
Salient points
- Microsoft Edge stable channel version 122.0.2365.52 supersedes stable channel version 121.0.2277.128. The last update on the Edge browser took place on 15 February 2024.
- Edge version 122.0.2365.52 corresponds to the latest Chrome version 122.0.6261.57. Chrome was updated on 20 February 2024.
- Chromium vulnerabilities – There have been 12 security fixes in the Edge version 122.0.2365.52 update for Windows. 8 of these security vulnerabilities are detected by external researchers. These vulnerabilities are listed below.
- Microsoft vulnerabilities – There have been 3 security fixes in Edge version 122.0.2365.52 that are specific to Microsoft. These vulnerabilities are shared below.
- The latest update also contains 4 feature updates for the Edge browser.
- There are 6 new policies and one policy becomes obsolete in Edge version 122.0.2365.52.
- The current update also addresses two issues related to PDF files in the Edge browser.
Vulnerabilities
The current update for Edge for Windows 122.0.2365.52 contains fixes that are specific to the Chromium project and Microsoft threats.
Chromium vulnerabilities
Edge version 122.0.2365.52 has a fix for 12 security vulnerabilities in the Chromium project. Eight of these vulnerabilities have been uncovered by external researchers. We have shared these below.
- 2 of these have a HIGH severity
- 4 are MEDIUM severity vulnerabilities
- 2 are LOW severity vulnerabilities
CVE details | Severity | Vulnerability details |
---|---|---|
CVE-2024-1669 | HIGH | Out of bounds memory access in Blink |
CVE-2024-1670 | HIGH | Use after free in Mojo |
CVE-2024-1671 | MEDIUM | Inappropriate implementation in Site Isolation |
CVE-2024-1672 | MEDIUM | Inappropriate implementation in Content Security Policy |
CVE-2024-1673 | MEDIUM | Use after free in Accessibility |
CVE-2024-1674 | MEDIUM | Inappropriate implementation in Navigation |
CVE-2024-1675 | LOW | Insufficient policy enforcement in Download |
CVE-2024-1676 | LOW | Inappropriate implementation in Navigation. |
Microsoft vulnerabilities
There are 3 vulnerabilities that are specific to Microsoft. These have been address in Edge version 122.0.2365.52. We have listed these 3 vulnerabilities below.
CVE details | CVSS score | Severity | Comments |
---|---|---|---|
CVE-2024-26192 | 8.2 | IMPORTANT | This vulnerability could lead to a browser sandbox escape. |
CVE-2024-21423 | 4.8 | LOW | The attacker who successfully exploited the vulnerability could have limited ability to perform code execution. Exploitation of this vulnerability only discloses limited information, no sensitive information can be obtained. |
CVE-2024-26188 | 4.3 | LOW | An attacker who successfully exploited this vulnerability could use it to cover and spoof elements of the UI. The modified information is only visual. |
Edge specific issue
Microsoft Edge version 122.0.2365.52 resolves the following issues in the browser engine:
- Resolved an issue where PDF text fields and drop down values were being rendered twice for specific files when using the Microsoft Edge built-in PDF reader powered by Adobe Acrobat.
- Resolved an issue where printing certain PDF files in landscape mode with the ‘fit to printable area’ option resulted in incorrect printing.
Feature updates in Edge 122.0.2365.52
The following features have been updated in Edge 122.0.2365.52:
- Moving Managed Site Indicator (Briefcase icon) into the lock icon in the address bar omnibox. The briefcase icon which signals that a page is managed via admin policies, has been moved into the lock icon in the address bar. End users can view details about the protections for a given page by clicking the lock icon in the address bar and then clicking the briefcase icon. For more information, see Understand Data loss Prevention in Microsoft Edge.
- Deprecation of the image enhancement feature. To improve end user experience, the image enhancement feature is deprecated.
- Configure recommended policies in the Microsoft Edge management service. The Microsoft Edge management service now provides admins with the ability to set recommended policies. This gives end users permission to override their admin’s policy configuration.
- Microsoft Edge has rebranded Web Capture to “Screenshot”. Microsoft Edge changed the branding for Web Capture with an icon change and renamed the feature to “Screenshot”. Users can easily use content from the web by taking a screenshot of a full page or a selected area. They can mark up the screenshot they took with a pen or touch later. Administrators can control availability using the WebCaptureEnabled policy. For more information, see Screenshot (microsoft.com).
Policy updates in Edge 122.0.2365.52
The following new policy updates are applicable for the Edge version 122.0.2365.52:-
- AIGenThemesEnabled – Enables DALL-E themes generation
- EnhanceSecurityModeAllowUserBypass – Allow users to bypass Enhanced Security Mode
- SuperDragDropEnabled – Super Drag Drop enabled
- UrlDiagnosticDataEnabled – URL reporting in Edge diagnostic data enabled
- EdgeOpenInSidebarEnabled – Enable open in Sidebar
- EdgeSidebarCustomizeEnabled – Enable sidebar customize
The following policy became obsolete:
- EdgeEnhanceImagesEnabled – Enhance images enabled (obsolete)
The following was modified:
- DiagnosticData – Send required and optional diagnostic data about browser usage. Supported on Windows since Stable 122 or later.
Install the latest version of Edge
The latest version of Microsoft Edge 122.0.2365.52 can be installed automatically. For this, you can close the browser and open it again. This should force Edge to pull the latest updated version.
Edge can also be updated manually. You can download the offline installer file for Microsoft Edge from the Microsoft Update Catalog site.
The direct download links for Edge version 122.0.2365.52 are shared below:
- Download Edge 122.0.2365.52 for x86 Windows version – the size of the .cab file is 153.2 MB.
- Download Edge 122.0.2365.52 for ARM64 Windows version – the size of the .cab file is 165.1 MB.
- Download Edge 122.0.2365.52 for the x64 Windows version – the size of the .cab file is 169 MB.
How to check the current Microsoft Edge version?
You can check the Microsoft Edge version installed on your system by following the instructions below:
- In your Microsoft Edge browser, click on the 3 dots (…) on the very right-hand side of the window
- Click on Help and Feedback
- Click on About Microsoft Edge
- This should give you the Microsoft Edge version on the system
The current update is being rolled out to the eligible systems.
If you restart the Microsoft Edge browser, your browser should automatically pick the latest version x from the Microsoft Servers.
February 2024 Cumulative Updates
- Chrome latest update – version 122.0.6261.57/.58
- Chrome latest version 121.0.6167.184/185 – 13 Feb 2024
- KB5034766 for Windows 11 21H2 edition
- KB5034765 Cumulative Update for Windows 11
- KB5034830 Monthly Rollup ESU for Windows Server 2012
- KB5034819 Monthly Rollup ESU for Windows Server 2012 R2
- KB5034769 for Windows Server 2022 – 23H2 edition
- KB5034770 for Windows Server 2022 – Feb 2024
- KB5034767 Cumulative Update for Windows Server 2016
- KB5034768 Cumulative Update for Windows Server 2019
- Microsoft reports 73 security vulnerabilities in Patch Tuesday – Feb 2024
January 2024 Cumulative Updates
The following cumulative updates for January 2024 are available:
- KB5034119 Cumulative Update for Windows Server 2016
- KB5034127 Cumulative Update for Windows Server 2019
- KB5034129 Cumulative Update for Windows Server 2022
- KB5034130 for Windows Server 2022 23H2 edition
- KB5034171 Monthly Rollup (ESU) for Windows Server 2012 R2
- KB5034184 Monthly Rollup Update (ESU) for Windows Server 2012
- KB5034121 Cumulative Update for Windows 11 21H2
- KB5034123 for Windows 11 22H2 and 23H2
- KB5034134 for Windows 10 – Jan 2024
- KB5034119 for Windows 10 version 1607
- KB5034127 for Windows 10 version 1809
December 2023 Cumulative or Security Updates
- KB5033371 for Windows 10 version 1809
- KB5033373 for Windows 10 version 1607
- KB5033379 for Windows 10
- KB5033372 for Windows 10 21H2 and 22H2
- KB5033375 Cumulative Update for Windows 11 22H2 and 23H2
- KB5033369 Cumulative Update for Windows 11 21H2
- KB5033420 Monthly Rollup Update for Windows Server 2012 R2
- KB5033429 Monthly Rollup Update for Windows Server 2012
- KB5033383 Cumulative Update for Windows Server 2022
- KB5033118 Cumulative Update for Windows Server 2022
- KB5033371 Cumulative Update for Windows Server 2019
- KB5033373 Cumulative Update for Windows Server 2016
- Microsoft Edge upgrades to version 120.0.2210.61
Rajesh Dhawan is a technology professional who loves to write about Cyber-security events and stories, Cloud computing and Microsoft technologies. He loves to break complex problems into manageable chunks of meaningful information.