PT-2024-27526 · Brave · Brave

Published

2024-09-18

·

Updated

2024-09-20

·

CVE-2024-37406

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Brave Android versions prior to 1.67.116
Description The issue is related to domain elision in the Brave Shields popup, where domains are elided from the right instead of the left. This may lead to domain confusion.
Recommendations For versions prior to 1.67.116, update to version 1.67.116 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-37406

Affected Products

Brave