CVE-2018-8178: Microsoft ChakraCore

High severity, CVSS 7.5. EPSS: 15.7% chance of exploitation in the next 30 days.

A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka "Microsoft Browser Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge.

Affected products

  • Microsoft ChakraCore: up to and including 1.8.3
  • Microsoft Edge: affected versions not specified
  • Microsoft Internet Explorer: version 11 only

Published 2018-05-09. Last modified 2026-06-17.