CVE-2023-28364: Medium severity brave browser vulnerability
An Open Redirect vulnerability exists prior to version 1.52.117, where the built-in QR scanner in Brave Browser Android navigated to scanned URLs automatically without showing the URL first. Now the user must manually navigate to the URL.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-28364.
What is the severity of CVE-2023-28364?
The severity of CVE-2023-28364 is medium.
What is the affected software for CVE-2023-28364?
The affected software for CVE-2023-28364 is Brave Browser version up to exclusive 1.52.117.
What is the description of CVE-2023-28364?
The description of CVE-2023-28364 is that an Open Redirect vulnerability exists in Brave Browser Android, where the built-in QR scanner navigated to scanned URLs automatically without showing the URL first, but now the user must manually navigate to the URL.
Is there a fix for CVE-2023-28364?
Yes, the fix for CVE-2023-28364 is to update Brave Browser to version 1.52.117 or later.