Even with encrypted DNS, the unencrypted host name is usually part of the TLS handshake (or the server wouldn’t know what certificate to present to you).
https://blog.cloudflare.com/handshake-encryption-endgame-an-...
https://www.reddit.com/r/CloudFlare/comments/wp6yve/what_are...