Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains a Other/Unknown vulnerability in function ContentSettingsObserver::AllowScript() in content_settings_observer.cc that can result in Websites can run inline JavaScript even if script is blocked, making attackers easier to track users. This attack appear to be exploitable via the victim must visit a specially crafted website. This vulnerability appears to have been fixed in 0.25.2.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Brave 安全漏洞
Vulnerability Description
Brave是美国Brave Software公司的一款Web浏览器产品。 Brave 0.22.810版本至0.24.0版本中的content_settings_observer.cc文件的‘ContentSettingsObserver::AllowScript()’函数存在安全漏洞。攻击者可借助特制的网站利用该漏洞即便在脚本被禁止的情况下运行内联JavaScript代码,跟踪用户。
CVSS Information
N/A
Vulnerability Type
N/A