CVE-2020-0827: Microsoft ChakraCore

High severity, CVSS 7.5. EPSS: 13.3% chance of exploitation in the next 30 days.

A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0768, CVE-2020-0823, CVE-2020-0825, CVE-2020-0826, CVE-2020-0828, CVE-2020-0829, CVE-2020-0830, CVE-2020-0831, CVE-2020-0832, CVE-2020-0833, CVE-2020-0848.

Affected products

  • Microsoft ChakraCore: before 1.11.17 (fixed in 1.11.17)
  • Microsoft Edge: affected versions not specified

Published 2020-03-12. Last modified 2026-06-17.