VYPR

Brave

by Brave

Source repositories

CVEs (26)

  • CVE-2022-47933MedDec 24, 2022
    risk 0.00cvss 6.5epss 0.01

    Brave Browser before 1.42.51 allowed a remote attacker to cause a denial of service via a crafted HTML file that references the IPFS scheme. This vulnerability is caused by an uncaught exception in the function ipfs::OnBeforeURLRequest_IPFSRedirectWork() in…

  • CVE-2022-47932MedDec 24, 2022
    risk 0.00cvss 6.5epss 0.01

    Brave Browser before 1.43.34 allowed a remote attacker to cause a denial of service via a crafted HTML file that mentions an ipfs:// or ipns:// URL. This vulnerability is caused by an incomplete fix for CVE-2022-47933.

  • CVE-2022-30334MedMay 7, 2022
    risk 0.00cvss 5.3epss 0.03

    Brave before 1.34, when a Private Window with Tor Connectivity is used, leaks .onion URLs in Referer and Origin headers. NOTE: although this was fixed by Brave, the Brave documentation still advises "Note that Private Windows with Tor Connectivity in Brave are just regular…

  • CVE-2021-45884HigDec 27, 2021
    risk 0.00cvss 7.5epss 0.03

    In Brave Desktop 1.17 through 1.33 before 1.33.106, when CNAME-based adblocking and a proxying extension with a SOCKS fallback are enabled, additional DNS requests are issued outside of the proxying extension using the system's DNS settings, resulting in information disclosure.…

  • CVE-2021-21323MedFeb 23, 2021
    risk 0.00cvss 4.3epss 0.02

    Brave is an open source web browser with a focus on privacy and security. In Brave versions 1.17.73-1.20.103, the CNAME adblocking feature added in Brave 1.17.73 accidentally initiated DNS requests that bypassed the Brave Tor proxy. Users with adblocking enabled would leak DNS…

  • CVE-2018-1000815MedDec 20, 2018
    risk 0.00cvss 4.3epss 0.01

    Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains a Other/Unknown vulnerability in function ContentSettingsObserver::AllowScript() in content_settings_observer.cc that can result in Websites can run inline JavaScript even if script is blocked, making…

Page 2 of 2