CVE-2018-0803: Microsoft Edge

Medium severity, CVSS 4.2. EPSS: 3.7% chance of exploitation in the next 30 days.

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to access information from one domain and inject it into another domain, due to how Microsoft Edge enforces cross-domain policies, aka "Microsoft Edge Elevation of Privilege Vulnerability".

Affected products

  • Microsoft Edge: affected versions not specified

Published 2018-01-04. Last modified 2026-06-17.