URL Parsing Vulnerability in Browser-Use by Browser-Use Team
CVE-2025-47241

4MEDIUM

Key Information:

Vendor
CVE Published:
3 May 2025

What is CVE-2025-47241?

The Browser-Use application prior to version 0.1.45 contains a vulnerability in its URL parsing mechanism. This flaw allows userinfo components to be improperly included within the authority portion of the URLs listed in allowed_domains. This mishandling can potentially lead to security issues, exposing users to unexpected behavior or exploits. It is essential for users of Browser-Use to update to version 0.1.45 or later to mitigate any risks associated with this vulnerability.

Affected Version(s)

browser-use 0 < 0.1.45

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.