VYPR
High severity7.5NVD Advisory· Published May 9, 2018· Updated Jun 17, 2026

CVE-2018-8128

CVE-2018-8128

Description

A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka "Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-0945, CVE-2018-0946, CVE-2018-0951, CVE-2018-0953, CVE-2018-0954, CVE-2018-0955, CVE-2018-1022, CVE-2018-8114, CVE-2018-8122, CVE-2018-8137, CVE-2018-8139.

Affected products

6
  • cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:*range: <=1.8.3
    • (no CPE)
    • (no CPE)range: ChakraCore
  • Microsoft/Edge3 versions
    cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: Windows 10 Version 1703 for 32-bit Systems

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.