Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Powerdns

42 known vulnerabilities

4
HIGH
29
MEDIUM
5
LOW

Top Products

dnsdist 18 recursor 13 authoritative 11
38 CVEs
4.9
CVE-2026-42396

Insufficient Validation of Member Zone Data May Cause Catalog Zone Transfer to Fail

5.9
CVE-2026-42002

Concurrency and locking defects in GSS-TSIG

7.5
CVE-2026-42001

Insufficient Validation of Autoprimary SOA Queries

6.8
CVE-2026-42000

Insufficient Validation of Names During AXFR

4.8
CVE-2026-41999

Incorrect Behaviour of Views with TCP PROXY Requests

6.5
CVE-2026-33611

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data,

5.9
CVE-2026-33610

A rogue primary server may cause file descriptor exhaustion and eventually a denial of service, when a PowerDNS secondar

5.3
CVE-2026-33609

Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domai

7.4
CVE-2026-33608

An attacker can send a notify request that causes a new secondary domain to be added to the bind backend, but causes sai

6.5
CVE-2026-33602

A rogue backend can send a crafted UDP response with a query ID off by one related to the maximum configured value, trig

3.1
CVE-2026-33599

A rogue backend can send a crafted SVCB response to a Discovery of Designated Resolvers request, when requested via eith

4.8
CVE-2026-33598

A cached crafted response can cause an out-of-bounds read if custom Lua code calls getDomainListByAddress() or getAddres

3.7
CVE-2026-33597

PRSD detection denial of service

3.1
CVE-2026-33596

A client might theoretically be able to cause a mismatch between queries sent to a backend and the received responses by

5.3
CVE-2026-33595

A client can trigger excessive memory allocation by generating a lot of errors responses over a single DoQ and DoH3 conn

5.3
CVE-2026-33594

A client can trigger excessive memory allocation by generating a lot of queries that are routed to an overloaded DoH bac

7.5
CVE-2026-33593

A client can trigger a divide by zero error leading to crash by sending a crafted DNSCrypt query.

5.3
CVE-2026-33254

An attacker can create a large number of concurrent DoQ or DoH3 connections, causing unlimited memory allocation in DNSd

4.4
CVE-2026-33601

If you use the zoneToCache function with a malicious authoritative server, an attacker can send a zone that result in a

4.4
CVE-2026-33600

An RPZ sent by a malicious authoritative server can result in a null pointer dereference, caused by a missing consistenc

5.9
CVE-2026-33262

An attacker can send replies that result in a null pointer dereference, caused by a missing consistency check and leadin

5.9
CVE-2026-33261

A zone transition from NSEC to NSEC3 might trigger an internal inconsistency and cause a denial of service.

5.3
CVE-2026-33260

An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a deni

5.0
CVE-2026-33259

Having many concurrent transfers of the same RPZ can lead to inconsistent RPZ data, use after free and/or a crash of the

5.3
CVE-2026-33258

By publishing and querying a crafted zone an attacker can cause allocation of large entries in the negative and aggressi

5.3
CVE-2026-33257

An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a deni

5.3
CVE-2026-33256

An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a deni

4.8
CVE-2026-27854

An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:

5.9
CVE-2026-27853

An attacker might be able to trigger an out-of-bounds write by sending crafted DNS responses to a DNSdist using the DNSQ

5.3
CVE-2026-24030

An attacker might be able to trick DNSdist into allocating too much memory while processing DNS over QUIC or DNS over HT

6.5
CVE-2026-24029

When the early_acl_drop (earlyACLDrop in Lua) option is disabled (default is enabled) on a DNS over HTTPs frontend using

5.3
CVE-2026-24028

An attacker might be able to trigger an out-of-bounds read by sending a crafted DNS response packet, when custom Lua cod

3.1
CVE-2026-0397

When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged

3.1
CVE-2026-0396

An attacker might be able to inject HTML content into the internal web dashboard by sending crafted DNS queries to a DNS

5.3
CVE-2026-24027

Crafted zones can lead to increased incoming network traffic.

5.3
CVE-2026-0398

Crafted zones can lead to increased resource usage and crafted CNAME chains can lead to cache poisoning in Recursor.

6.5
CVE-2025-59024

Crafted delegations or IP fragments can poison cached delegations in Recursor.

8.2
CVE-2025-59023

Crafted delegations or IP fragments can poison cached delegations in Recursor.

Frequently Asked Questions

How many CVEs affect Powerdns?

Powerdns has 42 CVE records in our database, including 0 critical and 4 high severity vulnerabilities.

What are the most severe Powerdns vulnerabilities?

Powerdns has 0 critical severity (CVSS 9.0+) and 4 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Powerdns vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Powerdns products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Powerdns Vulnerabilities

CyberStrike scans your infrastructure for Powerdns vulnerabilities and provides real-time remediation guidance.

Get Started