High severity7.5NVD Advisory· Published Dec 27, 2021· Updated Jun 17, 2026
CVE-2021-45884
CVE-2021-45884
Description
In Brave Desktop 1.17 through 1.33 before 1.33.106, when CNAME-based adblocking and a proxying extension with a SOCKS fallback are enabled, additional DNS requests are issued outside of the proxying extension using the system's DNS settings, resulting in information disclosure. NOTE: this issue exists because of an incomplete fix for CVE-2021-21323 and CVE-2021-22916.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Brave/Brave Desktopdescription
Patches
Vulnerability mechanics
References
4- github.com/brave/brave-core/pull/10742nvdPatchThird Party Advisory
- github.com/brave/brave-browser/issues/19070nvdExploitIssue TrackingPatchThird Party Advisory
- github.com/brave/brave-browser/issues/20079nvdIssue TrackingRelease NotesThird Party Advisory
- hackerone.com/reports/1377864nvdPermissions Required
News mentions
0No linked articles in our index yet.