CVE-2021-22917
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 1.2%
exploitation probability
1.2%top 32% of all CVEs
observed exploitation
nono source reports it
Brave Browser Desktop between versions 1.17 and 1.20 is vulnerable to information disclosure by way of DNS requests in Tor windows not flowing through Tor if adblocking was enabled.
Affected products
n/a · https://github.com/brave/brave-coreReferences
https://hackerone.com/reports/1077022