CVE-2017-8658

CRITICAL9.8EPSS 33.6%

ChakraCore RCE Vulnerability

Published: 5/17/2022Modified: 2/16/2024

Description

A remote code execution vulnerability exists in the way that the Chakra JavaScript engine renders when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability".

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.8CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References (6)