Rollback to Target version
Verified with Microsoft Edge 152.0.4191.53 — updated on July 10, 2026
Supported on: Microsoft Edge Update 1.3.133.3 and later
Path in the GPO console
Computer Configuration\Administrative Templates\Microsoft Edge Update\Applications\Microsoft Edge Beta Description
Specifies that Microsoft Edge Update should rollback installations of Microsoft Edge to the version indicated in 'Target version override'. This policy has no effect unless 'Target version override' is set and 'Update policy override' is set to one of the ON states (Always allow updates, Automatic silent updates only, Manual updates only). If you disable (0) this policy or don't configure it, installs that have a version higher than that specified by 'Target version override' will be left as-is. If you enable (1) this policy, installs that have a current version higher than specified by the 'Target version override' will be downgraded to the target version. We recommend that users install the latest version of the Microsoft Edge browser to ensure protection by the latest security updates. Rollback to an earlier version risks exposure to known security issues. This policy is meant to be used as a temporary fix to address issues in a Microsoft Edge browser update. Before temporarily rolling back your browser version, we recommend that you turn on Sync (https://go.microsoft.com/fwlink/?linkid=2133032) for all users in your organization. If you don't turn on Sync, there is a risk of permanent browsing data loss. Use this policy at your own risk. Note: All versions available for rollback can be viewed here https://aka.ms/EdgeEnterprise. This policy applies to Microsoft Edge version 86 or later. See https://go.microsoft.com/fwlink/?linkid=2133918 for more information. This policy is available only on Windows instances that are joined to a Microsoft® Active Directory® domain.
Registry
Software\Policies\Microsoft\EdgeUpdate Value name: RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}
Enabled: RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA} = 1
Disabled: RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA} = 0
Export Builder
BETAConfigure the state, scope and options, then generate .reg, PowerShell, Intune and SCCM outputs — or add the setting to a multi-setting collection.
These exports write the registry — this is not a managed GPO. ⓘ
.reg file
Windows Registry Editor Version 5.00
; Exported from gporais.com
; Policy: Rollback to Target version
; State: Enabled
; Supported on: Microsoft Edge Update 1.3.133.3 and later
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\EdgeUpdate]
"RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}"=dword:00000001 More formats (PowerShell, Intune, SCCM)
PowerShell
# Exported from gporais.com
# Policy: Rollback to Target version
# State: Enabled
# Supported on: Microsoft Edge Update 1.3.133.3 and later
$path = 'HKLM:\Software\Policies\Microsoft\EdgeUpdate'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}' -Value 1 -Type DWord Intune XML
No direct Policy CSP / OMA-URI mapping for this policy. Use the Intune Remediation tab, or ingest the ADMX in Intune. Intune Remediation
# === Detection script ===
# Exported from gporais.com
# Policy: Rollback to Target version
# State: Enabled
# Supported on: Microsoft Edge Update 1.3.133.3 and later
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKLM:\Software\Policies\Microsoft\EdgeUpdate' -Name 'RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Rollback to Target version
# State: Enabled
# Supported on: Microsoft Edge Update 1.3.133.3 and later
$path = 'HKLM:\Software\Policies\Microsoft\EdgeUpdate'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}' -Value 1 -Type DWord SCCM scripts
# Exported from gporais.com
# Policy: Rollback to Target version
# State: Enabled
# Supported on: Microsoft Edge Update 1.3.133.3 and later
# SCCM Configuration Item guidance:
# Create a Configuration Item of type "Setting: Script".
# Discovery script: use the Detection script below.
# Remediation script: use the Remediation script below.
# Compliance rule: the Discovery script output equals 'Compliant'.
# === Detection script ===
# Exported from gporais.com
# Policy: Rollback to Target version
# State: Enabled
# Supported on: Microsoft Edge Update 1.3.133.3 and later
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKLM:\Software\Policies\Microsoft\EdgeUpdate' -Name 'RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Rollback to Target version
# State: Enabled
# Supported on: Microsoft Edge Update 1.3.133.3 and later
$path = 'HKLM:\Software\Policies\Microsoft\EdgeUpdate'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'RollbackToTargetVersion{2CD8A007-E189-409D-A2C8-9AF4EF3C72AA}' -Value 1 -Type DWord Building a multi-setting collection? Add this setting and generate combined .reg / PowerShell / GPO scripts.