Is Brave on iOS vulnerable to CVE-2021-1879?

Troubleshooting technical issues is much easier when both the user and support agent practice clear communication. For this reason, we have provided the template below for you to fill out with information about your issue. Please provide as much detail as possible so we can most efficiently resolve your problem.


Description of the issue:
Is Brave on iOS vulnerable to CVE-2021-1879?

Apple has released an urgent security update to fix a security flaw affecting iPhone, iPad and Apple Watch devices alongside a warning that the vulnerability is being actively exploited in the wild.
The new iOS 14.4.2 was released on 26MAR21 with another security patch for Apple’s flagship iOS platform. Apple said it was “aware of reports that an exploit for this issue exists in the wild." This vulnerability, tracked as CVE-2021-1879, relates to a WebKit flaw that could enable adversaries to process maliciously crafted web content that may result in universal cross-site scripting attacks.

How can this issue be reproduced?

1.n/a
2.
3.

Expected result:
Do I need to update the app or iOS?

Brave Version( check About Brave):
1.23.1 (21.2.24.16)

Mobile Device details
iPhone 7 plus iOS 13.4.1

Additional Information:

iOS always uses Safari for rendering websites. Brave or any other browser on iOS is merely a fancy graphical user interface with a few added features. Brave does not have its own rendering engine on iOS.

If you updated to iOS 14.4.2 you are safe from the vulnerability you mentioned.

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.