Netskope Threat Labs

BROWSER-IE Microsoft Edge JsSetCurrentContext out of bounds read attempt

IPS-CFWIPS-SWG

2 SIDs: 45150, 45151

First seen
January 2022
Last seen
October 2026

Detects web content that exploits CVE-2017-11909, an out-of-bounds read in Microsoft Edge's scripting context switching that can leak memory. The rule matches the typed array and loop pattern that public exploits use to read beyond allocated buffers.