Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.2
CVE-2025-59023
Crafted delegations or IP fragments can poison cached delegations in Recursor.
Recursor
5.1.8 / 5.2.6+
MEDIUM 6.5
CVE-2025-59024
Crafted delegations or IP fragments can poison cached delegations in Recursor.
Recursor
5.1.8 / 5.2.6+
HIGH 7.5
CVE-2025-59030
An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.
Recursor
5.1.9 / 5.2.7+
MEDIUM 5.3
CVE-2025-59029
An attacker can trigger an assertion failure by requesting crafted DNS records, waiting for them to be inserted into the records cache, then send a q…
Recursor
Mitigation only
MEDIUM 5.3
CVE-2023-26437
Denial of service vulnerability in PowerDNS Recursor allows authoritative servers to be marked unavailable.This issue affects Recursor: through 4.6.5…
Recursor
4.6.6 / 4.7.5+
HIGH 7.5
CVE-2023-22617EPSS 7%
A remote attacker might be able to cause infinite recursion in PowerDNS Recursor 4.8.0 via a DNS query that retrieves DS records for a misconfigured …
Recursor
Mitigation only
HIGH 7.5
CVE-2021-36754EPSS 65%
PowerDNS Authoritative Server 4.5.0 before 4.5.1 allows anybody to crash the process by sending a specific query (QTYPE 65535) that causes an out-of-…
Authoritative Server
4.5.1+
HIGH 7.5
CVE-2020-25829EPSS 7%
An issue has been found in PowerDNS Recursor before 4.1.18, 4.2.x before 4.2.5, and 4.3.x before 4.3.5. A remote attacker can cause the cached record…
Recursor
4.1.18 / 4.2.5+
CRITICAL 9.8
CVE-2020-24698
An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker might…
Authoritative
after 4.3.0
HIGH 8.1
CVE-2020-24696
An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker can t…
Authoritative
after 4.3.0
HIGH 7.5
CVE-2020-24697
An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker can c…
Authoritative
after 4.3.0
MEDIUM 5.3
CVE-2020-14196
In PowerDNS Recursor versions up to and including 4.3.1, 4.2.2 and 4.1.16, the ACL restricting access to the internal web server is not properly enfo…
Recursor
after 4.3.1
HIGH 8.8
CVE-2020-10030EPSS 24%
An issue has been found in PowerDNS Recursor 4.1.0 up to and including 4.3.0. It allows an attacker (with enough privileges to change the system's ho…
Recursor
after 4.3.0
HIGH 7.5
CVE-2019-10162
A vulnerability has been found in PowerDNS Authoritative Server before versions 4.1.10, 4.0.8 allowing an authorized user to cause the server to exit…
Authoritative
4.0.8 / 4.1.10+
CRITICAL 9.8
CVE-2019-3807
An issue has been found in PowerDNS Recursor versions 4.1.x before 4.1.9 where records in the answer section of responses received from authoritative…
Recursor
after 4.1.8
HIGH 8.1
CVE-2019-3806
An issue has been found in PowerDNS Recursor versions after 4.1.3 before 4.1.9 where Lua hooks are not properly applied to queries received over TCP …
Recursor
4.1.9+
HIGH 7.5
CVE-2018-16855EPSS 59%
An issue has been found in PowerDNS Recursor before version 4.1.8 where a remote attacker sending a DNS query can trigger an out-of-bounds memory rea…
Recursor
4.1.8+
HIGH 7.5
CVE-2018-10851EPSS 6%
PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulne…
Authoritative
after 4.1.4
HIGH 7.5
CVE-2018-14626
PowerDNS Authoritative Server 4.1.0 up to 4.1.4 inclusive and PowerDNS Recursor 4.0.0 up to 4.1.4 inclusive are vulnerable to a packet cache pollutio…
Authoritative
after 4.1.4
MEDIUM 5.9
CVE-2018-14663
An issue has been found in PowerDNS DNSDist before 1.3.3 allowing a remote attacker to craft a DNS query with trailing data such that the addition of…
Dnsdist
after 1.3.2
MEDIUM 5.9
CVE-2018-14644
An issue has been found in PowerDNS Recursor from 4.0.0 up to and including 4.1.4. A remote attacker sending a DNS query for a meta-type like OPT can…
Recursor
after 4.1.4
HIGH 7.5
CVE-2016-7069
An issue has been found in dnsdist before 1.2.0 in the way EDNS0 OPT records are handled when parsing responses from a backend. When dnsdist is confi…
Dnsdist
after 1.2.0
HIGH 7.8
CVE-2018-1046
pdns before version 4.1.2 is vulnerable to a buffer overflow in dnsreplay. In the dnsreplay tool provided with PowerDNS Authoritative, replaying a sp…
Pdns
4.1.2+
HIGH 7.1
CVE-2017-15091
An issue has been found in the API component of PowerDNS Authoritative 4.x up to and including 4.0.4 and 3.x up to and including 3.4.11, where some o…
Authoritative
after 4.0.4
MEDIUM 6.1
CVE-2017-15092
A cross-site scripting issue has been found in the web interface of PowerDNS Recursor from 4.0.0 up to and including 4.0.6, where the qname of DNS qu…
Recursor
after 4.0.6
MEDIUM 5.9
CVE-2017-15090
An issue has been found in the DNSSEC validation component of PowerDNS Recursor from 4.0.0 and up to and including 4.0.6, where the signatures might …
Recursor
after 4.0.6
MEDIUM 5.9
CVE-2017-15094
An issue has been found in the DNSSEC parsing code of PowerDNS Recursor from 4.0.0 up to and including 4.0.6 leading to a memory leak when parsing sp…
Recursor
after 4.0.6
MEDIUM 5.3
CVE-2017-15093
When api-config-dir is set to a non-empty value, which is not the case by default, the API in PowerDNS Recursor 4.x up to and including 4.0.6 and 3.x…
Recursor
after 4.0.6
HIGH 8.8
CVE-2017-7557
dnsdist version 1.1.0 is vulnerable to a flaw in authentication mechanism for REST API potentially allowing CSRF attack.
Dnsdist
Patch available
HIGH 7.5
CVE-2016-5427EPSS 63%
PowerDNS (aka pdns) Authoritative Server before 3.4.10 does not properly handle a . (dot) inside labels, which allows remote attackers to cause a den…
Authoritative
after 3.4.9