EIP-2026-115684

PRE-CVE

Microsoft Internet Explorer 11.0.9600.18124 EdUtil::GetCommonAncestorElement - Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115684. PoCs published by Marcin Ressel.

AI-analyzed exploit summary This HTML/JavaScript PoC exploits a vulnerability in IE11's EdUtil::GetCommonAncestorElement function, causing a remote crash via crafted DOM manipulation and MutationObserver misuse. The exploit triggers a crash by manipulating the selection range and DOM structure.

Description

Microsoft Internet Explorer 11.0.9600.18124 EdUtil::GetCommonAncestorElement - Denial of Service

Exploits (1)

exploitdb WORKING POC VERIFIED
by Marcin Ressel · htmldoswindows
https://www.exploit-db.com/exploits/39144

This HTML/JavaScript PoC exploits a vulnerability in IE11's EdUtil::GetCommonAncestorElement function, causing a remote crash via crafted DOM manipulation and MutationObserver misuse. The exploit triggers a crash by manipulating the selection range and DOM structure.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Internet Explorer 11 (11.0.9600.18124)
No auth needed
Prerequisites: Target must be using Internet Explorer 11 on Windows 7 x64
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026