CVE-2023-52263 Information
Dec 31, 2023
cve
Description
Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.
Reference
https://github.com/brave/brave-browser/issues/32449 https://github.com/brave/brave-core/pull/19820 https://github.com/brave/brave-core/pull/19820/commits/9da202f7f4bc80b6975909b684bbc0764a31c4e9 https://github.com/brave/brave-browser/issues/32473
Share on: