Medium severity5.5NVD Advisory· Published Feb 26, 2022· Updated Jun 17, 2026
CVE-2021-46702
CVE-2021-46702
Description
Tor Browser 9.0.7 on Windows 10 build 10586 is vulnerable to information disclosure. This could allow local attackers to bypass the intended anonymity feature and obtain information regarding the onion services visited by a local user. This can be accomplished by analyzing RAM memory even several hours after the local user used the product. This occurs because the product doesn't properly free memory.
Affected products
3- Tor Project/Tor Browserdescription
- Range: 9.0.7
- cpe:2.3:a:torproject:tor:9.0.7:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.sciencedirect.com/science/article/pii/S0167404821001358nvdTechnical DescriptionThird Party Advisory
News mentions
0No linked articles in our index yet.