CVE-2022-47933
MEDIUMBrave < 1.42.51 - Improper Exception Handling
Title source: ruleDescription
Brave Browser before 1.42.51 allowed a remote attacker to cause a denial of service via a crafted HTML file that references the IPFS scheme. This vulnerability is caused by an uncaught exception in the function ipfs::OnBeforeURLRequest_IPFSRedirectWork() in ipfs_redirect_network_delegate_helper.cc.
Scores
CVSS v3
6.5
EPSS
0.0073
EPSS Percentile
72.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Classification
CWE
CWE-755
Status
published
Affected Products (1)
brave/brave
< 1.42.51
Timeline
Published
Dec 24, 2022
Tracked Since
Feb 18, 2026