CVE-2022-47933

MEDIUM

Brave < 1.42.51 - Improper Exception Handling

Title source: rule

Description

Brave Browser before 1.42.51 allowed a remote attacker to cause a denial of service via a crafted HTML file that references the IPFS scheme. This vulnerability is caused by an uncaught exception in the function ipfs::OnBeforeURLRequest_IPFSRedirectWork() in ipfs_redirect_network_delegate_helper.cc.

Scores

CVSS v3 6.5
EPSS 0.0073
EPSS Percentile 72.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Classification

CWE
CWE-755
Status published

Affected Products (1)

brave/brave < 1.42.51

Timeline

Published Dec 24, 2022
Tracked Since Feb 18, 2026