Known Vulnerabilities for Browser by Brave
Listed below are 4 of the newest known vulnerabilities associated with "Browser" by "Brave".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-41469 json | Beghelli Sicuro24 SicuroWeb does not enforce a Content Security Policy, allowing unrestricted loading of external JavaScript ... | Not Provided | 2026-04-22 | 2026-04-22 |
| CVE-2026-41468 json | Beghelli Sicuro24 SicuroWeb embeds AngularJS 1.5.2, an end-of-life component containing known sandbox escape primitives. When... | Not Provided | 2026-04-22 | 2026-04-22 |
| CVE-2026-41353 json | OpenClaw before 2026.3.22 contains an access control bypass vulnerability in the allowProfiles feature that allows attackers ... | Not Provided | 2026-04-23 | 2026-04-23 |
| CVE-2026-41347 json | OpenClaw before 2026.3.31 lacks browser-origin validation in HTTP operator endpoints when operating in trusted-proxy mode, al... | Not Provided | 2026-04-23 | 2026-04-23 |
| CVE-2026-41241 json | pretalx is a conference planning tool. Prior to 2026.1.0, The organiser search in the pretalx backend rendered submission tit... | Not Provided | 2026-04-23 | 2026-04-23 |
| CVE-2026-41200 json | STIG Manager is an API and web client for managing Security Technical Implementation Guides (STIG) assessments of Informatio... | Not Provided | 2026-04-23 | 2026-04-23 |
| CVE-2026-41059 json | OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Versions 7.5.0 through 7.15.1 have a con... | Not Provided | 2026-04-22 | 2026-04-22 |
| CVE-2026-40948 json | The Keycloak authentication manager in `apache-airflow-providers-keycloak` did not generate or validate the OAuth 2.0 `state`... | Not Provided | 2026-04-18 | 2026-04-20 |
| CVE-2026-40928 json | WWBN AVideo is an open source video platform. In versions 29.0 and prior, multiple AVideo JSON endpoints under `objects/` acc... | Not Provided | 2026-04-21 | 2026-04-22 |
| CVE-2026-40925 json | WWBN AVideo is an open source video platform. In versions 29.0 and prior, `objects/configurationUpdate.json.php` (also routed... | Not Provided | 2026-04-21 | 2026-04-21 |