CVE-2025-59030High· 7.5▾ TwilightAn attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 41.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.6%
An attacker can trigger the removal of cached records by sending a NOTIFY query over TCP.
recursor >= 5.1.0, < 5.1.9recursor >= 5.2.0, < 5.2.7recursor >= 5.3.0, < 5.3.3Upgrade past the affected range:
recursor 5.3.3Connected by shared product, vendor, weakness, or advisory.
CVE-2025-59029Medium· 5.3An attacker can trigger an assertion failure by requesting crafted DNS records, waiting for them to be inserted into the records cache, then send a query with qtype set to ANY.
CVE-2024-1488High· 8.0A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration
CVE-2025-8766Medium· 6.4A container privilege escalation flaw was found in certain Multi-Cloud Object Gateway Core images
CVE-2026-27854Medium· 4.8An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code
CVE-2026-27853Medium· 5.9An attacker might be able to trigger an out-of-bounds write by sending crafted DNS responses to a DNSdist using the DNSQuestion:changeName or DNSResponse:changeName methods in custom Lua code
CVE-2026-24030Medium· 5.3An attacker might be able to trick DNSdist into allocating too much memory while processing DNS over QUIC or DNS over HTTP/3 payloads, resulting in a denial of service