Brave Browser before 0.13.0 allows a tab to close itself even if the tab was not opened by a script, resulting in denial of service.
References
Link | Resource |
---|---|
https://hackerone.com/reports/176197 | Third Party Advisory |
https://github.com/brave/browser-laptop/issues/5007 | Third Party Advisory |
https://github.com/brave/browser-laptop/issues/5006 | Third Party Advisory |
https://www.exploit-db.com/exploits/44475/ | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2018-04-03 19:29
Updated : 2018-05-10 06:28
NVD link : CVE-2016-10718
Mitre link : CVE-2016-10718
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
brave
- brave_browser