PT-2017-18349 · Brave · Brave
Published
2017-05-03
·
Updated
2024-08-05
·
CVE-2017-8459
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Brave version 0.12.4
Description
The issue concerns a Status Bar Obfuscation problem where a redirection target is displayed in a potentially unexpected manner. This behavior might have legitimate uses, such as in the display of web-search results, which is why some third parties dispute this issue.
Recommendations
For Brave version 0.12.4, consider restricting the display of redirection targets in the status bar to minimize potential confusion until a more definitive resolution is available. At the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Brave