![]() |
|
HackerOne Disclosed Reports - 2025-03-25 - Printable Version +- Dark C0d3rs (https://darkcoders.wiki) +-- Forum: Exploit Log (https://darkcoders.wiki/Forum-Exploit-Log) +--- Forum: Research Papers/Vulnerability reports (https://darkcoders.wiki/Forum-Research-Papers-Vulnerability-reports) +--- Thread: HackerOne Disclosed Reports - 2025-03-25 (/Thread-HackerOne-Disclosed-Reports-2025-03-25) |
HackerOne disclosed reports - 2025-03-25 - hashXploiter - 03-26-2025
Low
resolved Null Pointer Dereference by Crafted Response from AI ModelBug reported by canalun was disclosed at March 26, 2025, 2:02 am | NULL Pointer Dereference The Brave browser was affected by a null pointer dereference vulnerability caused by a crafted response from an AI model. The vulnerability was triggered when the user set a malicious endpoint as the AI model's server endpoint. The code handling the server response assumed a specific structure without validating it, leading to the null pointer dereference. |