CVE-2017-8458

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
03/05/2017
Last modified:
20/04/2025

Description

Brave 0.12.4 has a URI Obfuscation issue in which a string such as https://safe.example.com@unsafe.example.com/ is displayed without a clear UI indication that it is not a resource on the safe.example.com web site.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:brave:brave:0.12.4:*:*:*:*:*:*:*