Security restrictions bypass in Microsoft Edge - CVE-2018-8276
Published: July 10, 2018 / Updated: July 10, 2018
Microsoft Edge
Detailed vulnerability description
The vulnerability allows a local attacker to bypass security restrictions on the target system.
The vulnerability exists due to improper handling of accessing memory by the Microsoft Chakra scripting engine. A local attacker can run the Microsoft Chakra scripting engine, browse to a malicious website and bypass Control Flow Guard (CFG).