Brave Browser <=1.59.39: WebUI Factory Schema Flaw
CVE-2023-52263 Published on December 30, 2023

Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to browser/brave_content_browser_client.cc and browser/ui/webui/brave_web_ui_controller_factory.cc.

NVD


Products Associated with CVE-2023-52263

Want to know whenever a new CVE is published for Brave Browser? stack.watch will email you.

 

Exploit Probability

EPSS
0.10%
Percentile
27.89%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.