Stats
- First seen
- December 2023
- Last seen
- October 2026
Description
Detects web content that exploits CVE-2018-8467, a type confusion in Microsoft Edge's scripting engine that can allow code execution. The rule matches the method invocation with an inline object assignment that public exploits use to confuse the engine's value handling.