CVE-2018-8384
35Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 62%
from disclosure to weapon34 days
Published on NVDAug 15
1st PoC+34d
exploitation probability
62%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore. This CVE ID is unique from CVE-2018-8266, CVE-2018-8380, CVE-2018-8381.
Affected products
Microsoft · ChakraCorepublic PoCs found — 2✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/45431cve_referencewww.exploit-db.com/exploits/45431/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.