I wish they would stop calling it End-to-End, it's misleading, they don't talk about DNS at all. One weak link in the chain means the entire chain is weak.
DNS is not relevant at all here. Your email is encrypted client-side at one end, and decrypted client-side at the other end. At no point in between does it exist in cleartext. If there is some DNS vulnerability that causes your email to get intercepted, that in no way compromises the encryption.
Whatever. "here" is any text encrypted by this module, whether it is the body of an email or something else. The data isn't getting decrypted mid-stream, it goes from one client (or "end") to another. It is end to end encryption, and DNS has nothing to do with it.