Medium severity6.1NVD Advisory· Published Nov 15, 2017· Updated May 13, 2026
CVE-2017-11863
CVE-2017-11863
Description
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to trick a user into loading a page containing malicious content, due to how the Edge Content Security Policy (CSP) validates documents, aka "Microsoft Edge Security Feature Bypass Vulnerability". This CVE ID is unique from CVE-2017-11872 and CVE-2017-11874.
Affected products
2- Microsoft Corporation/Microsoft Edgev5Range: Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11863nvdPatchVendor Advisory
- www.securityfocus.com/bid/101748nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039801nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.