Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qjjc-3p8q-pjq2

Опубликовано: 30 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.

Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.

EPSS

Процентиль: 22%
0.00074
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
около 2 лет назад

Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.

CVSS3: 6.1
debian
около 2 лет назад

Brave Browser before 1.59.40 does not properly restrict the schema for ...

EPSS

Процентиль: 22%
0.00074
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601