brave browser CVE-2021-22917 is a vulnerability in Brave Browser
Published on July 12, 2021

Brave Browser Desktop between versions 1.17 and 1.20 is vulnerable to information disclosure by way of DNS requests in Tor windows not flowing through Tor if adblocking was enabled.

NVD

Weakness Type

What is an Information Disclosure Vulnerability?

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

CVE-2021-22917 has been classified to as an Information Disclosure vulnerability or weakness.


Products Associated with CVE-2021-22917

Want to know whenever a new CVE is published for Brave Browser? stack.watch will email you.

 

Exploit Probability

EPSS
0.33%
Percentile
55.61%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.