Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/powerdns/authoritative

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

Incorrect Behaviour of Views with TCP PROXY Requests

Join the discussion

Concurrency and locking defects in GSS-TSIG

Join the discussion

Insufficient Validation of Autoprimary SOA Queries

Join the discussion

Insufficient Validation of Member Zone Data May Cause Catalog Zone Transfer to Fail

Join the discussion

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

Join the discussion

A rogue primary server may cause file descriptor exhaustion and eventually a denial of service, when a PowerDNS secondary server forwards a DNS update request to it.

Join the discussion

Incomplete escaping of LDAP queries when running with 8bit-dns enabled allows users to perform queries of internal domain subtrees.

Join the discussion

An attacker can send a notify request that causes a new secondary domain to be added to the bind backend, but causes said backend to update its configuration to an invalid one, leading to the backend no longer able to run on the next restart, requiring manual operation to fix it.

Join the discussion

CVE-2026-33260 is a medium severity vulnerability in PowerDNS Authoritative versions 4.9.0 and 5.0.0. It allows an attacker to send a web request that triggers unlimited memory allocation in the internal web server, potentially causing a denial of service. The internal web server is disabled by default, which reduces the attack surface. There is no official patch or remediation level currently provided. No known exploits are reported in the wild.

Join the discussion

CVE-2026-33257 is a medium severity vulnerability in PowerDNS Authoritative versions 4.9.0 and 5.0.0. It allows an attacker to send a web request that triggers unlimited memory allocation in the internal web server, potentially causing a denial of service. The internal web server is disabled by default, which reduces the attack surface. There is no official patch or remediation level currently provided by the vendor. No known exploits are reported in the wild at this time.

Join the discussion

Showing 1 to 10 of 10 results

Filters:Package: pkg:github/powerdns/authoritative
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses