Description
Brave Browser Desktop between versions 1.17 and 1.20 is vulnerable to information disclosure by way of DNS requests in Tor windows not flowing through Tor if adblocking was enabled.
References
https://hackerone.com/reports/1077022
Third Party Advisory
https://hackerone.com/reports/1077022
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
6.5 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2021-07-12T09:15:07.853Z
4 years agoLast modified
2024-11-21T04:50:54.657Z
1 year ago