ZeroHour

CVE-2021-22916

CVSS 3.1
5.9 medium
EPSS
3%p87
Published
()
Modified
Description

In Brave Desktop between versions 1.17 and 1.26.60, when adblocking is enabled and a proxy browser extension is installed, the CNAME adblocking feature issues DNS requests that used the system DNS settings instead of the extension's proxy settings, resulting in possible information disclosure.

Vendors
brave
Products
brave
Weakness
CWE-200
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.