Known Vulnerabilities for Brave by Brave
Listed below are 10 of the newest known vulnerabilities associated with "Brave" by "Brave".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-41576 json | Brave CMS is an open-source CMS. Prior to commit 6c56603, the contact form is publicly accessible (no authentication required... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-41524 json | Brave CMS is an open-source CMS. Prior to commit 6c56603, page and article body content entered through the CKEditor rich-tex... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-35183 json | Brave CMS is an open-source CMS. Prior to 2.0.6, an Insecure Direct Object Reference (IDOR) vulnerability exists in the artic... | Not Provided | 2026-04-06 | 2026-04-07 |
| CVE-2026-35182 json | Brave CMS is an open-source CMS. Prior to 2.0.6, this vulnerability is a missing authorization check found in the update role... | Not Provided | 2026-04-06 | 2026-04-07 |
| CVE-2026-35164 json | Brave CMS is an open-source CMS. Prior to 2.0.6, an unrestricted file upload vulnerability exists in the CKEditor upload func... | Not Provided | 2026-04-06 | 2026-04-07 |
| CVE-2026-35047 json | Brave CMS is an open-source CMS. Prior to 2.0.6, an Unrestricted File Upload vulnerability in the CKEditor endpoint allows at... | Not Provided | 2026-04-06 | 2026-04-07 |
| CVE-2025-68508 json | Missing Authorization vulnerability in Brave Brave brave-popup-builder allows Exploiting Incorrectly Configured Access Contro... | Not Provided | 2025-12-24 | 2026-04-27 |
| CVE-2024-35655 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brave Brave brave-popup... | Not Provided | 2024-06-04 | 2026-04-23 |
| CVE-2024-30453 json | Server-Side Request Forgery (SSRF) vulnerability in Brave Brave Popup Builder.This issue affects Brave Popup Builder: from n/... | Not Provided | 2024-03-29 | 2026-04-28 |
| CVE-2023-51534 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brave Brave – Create ... | Not Provided | 2024-02-01 | 2026-04-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Brave | Brave | 1.9.9 | |||
| Application | Brave | Brave | 1.9.80 | |||
| Application | Brave | Brave | 1.9.8 | |||
| Application | Brave | Brave | 1.9.79 | |||
| Application | Brave | Brave | 1.9.78 | |||
| Application | Brave | Brave | 1.9.77 | |||
| Application | Brave | Brave | 1.9.76 | |||
| Application | Brave | Brave | 1.9.75 | |||
| Application | Brave | Brave | 1.9.74 | |||
| Application | Brave | Brave | 1.9.73 | |||
| Application | Brave | Brave | 1.9.72 | |||
| Application | Brave | Brave | 1.9.71 | |||
| Application | Brave | Brave | 1.9.70 | |||
| Application | Brave | Brave | 1.9.7 | |||
| Application | Brave | Brave | 1.9.69 | |||
| Application | Brave | Brave | 1.9.68 | |||
| Application | Brave | Brave | 1.9.67 | |||
| Application | Brave | Brave | 1.9.66 | |||
| Application | Brave | Brave | 1.9.65 | |||
| Application | Brave | Brave | 1.9.64 |