CVE-2018-8319: Microsoft Research JavaScript Cryptography Library

Critical severity, CVSS 9.8. EPSS: 7.5% chance of exploitation in the next 30 days.

A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, aka "MSR JavaScript Cryptography Library Security Feature Bypass Vulnerability." This affects Microsoft Research JavaScript Cryptography Library.

Affected products

  • Microsoft Research JavaScript Cryptography Library: version 1.4 only

Published 2018-07-11. Last modified 2026-06-17.