VYPR
Vendor

Brave Browser

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2023-42471CriSep 11, 2023
    risk 0.64cvss 9.8epss 0.03

    The wave.ai.browser application through 1.0.35 for Android allows a remote attacker to execute arbitrary JavaScript code via a crafted intent. It contains a manifest entry that exports the wave.ai.browser.ui.splash.SplashScreen activity. This activity uses a WebView component to…

  • CVE-2017-18256MedApr 4, 2018
    risk 0.46cvss 6.5epss 0.05

    Brave Browser before 0.13.0 allows remote attackers to cause a denial of service (resource consumption) via a long alert() argument in JavaScript code, because window dialogs are mishandled.

  • CVE-2023-52263MedDec 30, 2023
    risk 0.00cvss 6.1epss 0.00

    Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.