CVE-2021-22929: Medium severity Brave Brave vulnerability
Published Aug 31, 2021
·Updated
An information disclosure exists in Brave Browser Desktop prior to version 1.28.62, where logged warning messages that included timestamps of connections to V2 onion domains in tor.log.
Affected Software
1 affected component
Brave Brave<1.28.62
Remediation
Patch Available
Event History
Aug 31, 2021
CVE Published
via MITRE·04:53 PM
Data Sourced
via MITRE·04:53 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-22929?
CVE-2021-22929 is an information disclosure vulnerability in Brave Browser Desktop prior to version 1.28.62.
2
What is the severity of CVE-2021-22929?
CVE-2021-22929 has a severity rating of 6.1 (medium).
3
How does CVE-2021-22929 impact Brave Browser Desktop?
CVE-2021-22929 allows logged warning messages that include timestamps of connections to V2 onion domains in tor.log to be disclosed.
4
How can I fix CVE-2021-22929?
To fix CVE-2021-22929, update your Brave Browser Desktop to version 1.28.62 or newer.
5
Where can I find more information about CVE-2021-22929?
You can find more information about CVE-2021-22929 at the following link: [Link to HackerOne report](https://hackerone.com/reports/1249056)