Configuration Vulnerability in PowerDNS by PowerDNS
CVE-2026-33608
7.4HIGH
What is CVE-2026-33608?
A vulnerability in PowerDNS allows an attacker to exploit the system by sending a notify request that inadvertently introduces a new secondary domain. This results in an invalid configuration update for the backend. Consequently, the backend becomes non-operational upon the next restart, necessitating manual intervention to restore functionality.
Affected Version(s)
Authoritative 5.0.0 < 5.0.4
Authoritative 4.9.0 < 4.9.14
