Vulnerabilities
Last updated 1 hour ago
| Package | Summary | Severity | Published | Modified |
|---|---|---|---|---|
|
|
CoreDNS: Unauthenticated memory exhaustion in custom transports | High Risk 7.5 | 10 days ago | 2 hours ago |
|
|
CoreDNS DoH/DoQ/gRPC bypass UPDATE rejection enforced on UDP/TCP | High Risk 7.5 | 10 days ago | 2 hours ago |
|
|
CoreDNS: Unauthenticated memory exhaustion in custom transports in github.com/coredns/coredns | Unknown | 3 hours ago | 2 hours ago |
|
|
CoreDNS DoH/DoQ/gRPC bypass UPDATE rejection enforced on UDP/TCP in github.com/coredns/coredns | Unknown | 3 hours ago | 2 hours ago |
|
|
CoreDNS has TSIG authentication bypass on gRPC and QUIC transports | High Risk 7.5 | 5 months ago | 18 days ago |
|
|
CoreDNS has TSIG authentication bypass on DoT, DoH, DoH3, DoQ, and gRPC | High Risk 7.5 | 5 months ago | 18 days ago |
|
|
CoreDNS' DoQ worker pool does not bound stream backlog | High Risk 7.5 | 5 months ago | 18 days ago |
|
|
CoreDNS' transfer stanza selection uses lexicographic compare (subzone ACL bypass) | High Risk 7.5 | 5 months ago | 18 days ago |
|
|
CoreDNS DoH GET oversized dns= query parameter causes pre-validation CPU and memory amplification | High Risk 7.5 | 5 months ago | 18 days ago |
|
|
CoreDNS Loop Detection Denial of Service Vulnerability | High Risk 7.5 | 6 months ago | 18 days ago |
|
|
CoreDNS ACL Bypass | High Risk 7.7 | 6 months ago | 18 days ago |
|
|
CoreDNS gRPC/HTTPS/HTTP3 servers lack resource limits, enabling DoS via unbounded connections and oversized messages | Medium Risk 6.0 | 8 months ago | 18 days ago |
|
|
CoreDNS: DNS Cache Pinning via etcd Lease ID Confusion | High Risk 7.1 | 1 year ago | 18 days ago |
|
|
CoreDNS Vulnerable to DoQ Memory Exhaustion via Stream Amplification | High Risk 7.5 | 1 year ago | 18 days ago |
|
|
CoreDNS Cache Poisoning via a birthday attack | Low Risk 3.7 | 2 years ago | 18 days ago |
|
|
CoreDNS vulnerable to TuDoor Attacks | Medium Risk 5.9 | 2 years ago | 18 days ago |
|
|
CoreDNS may return invalid cache entries | Medium Risk 5.3 | 2 years ago | 18 days ago |
|
|
coreDNS vulnerable to Improper Restriction of Communication Channel to Intended Endpoints | Medium Risk 4.4 | 3 years ago | 18 days ago |
|
|
Improper random number generation in github.com/coredns/coredns | Medium Risk 6.0 | 4 years ago | 18 days ago |
|
|
coreDNS vulnerable to Improper Restriction of Communication Channel to Intended Endpoints | Medium Risk 6.1 | 3 years ago | 18 days ago |
|
|
CoreDNS has TSIG authentication bypass on DoT, DoH, DoH3, DoQ, and gRPC in github.com/coredns/coredns | Unknown | 3 months ago | 3 months ago |
|
|
CoreDNS has TSIG authentication bypass on gRPC and QUIC transports in github.com/coredns/coredns | Unknown | 3 months ago | 3 months ago |
|
|
CoreDNS' transfer stanza selection uses lexicographic compare (subzone ACL bypass) in github.com/coredns/coredns | Unknown | 3 months ago | 3 months ago |
|
|
CoreDNS DoH GET oversized dns= query parameter causes pre-validation CPU and memory amplification in github.com/coredns/coredns | Unknown | 3 months ago | 3 months ago |
|
|
CoreDNS' DoQ worker pool does not bound stream backlog in github.com/coredns/coredns | Unknown | 4 months ago | 3 months ago |
|
|
CoreDNS Loop Detection Denial of Service Vulnerability in github.com/coredns/coredns | Unknown | 6 months ago | 6 months ago |
|
|
CoreDNS ACL Bypass in github.com/coredns/coredns | Unknown | 6 months ago | 6 months ago |
|
|
CoreDNS vulnerable to TuDoor Attacks in github.com/coredns/coredns | Unknown | 2 years ago | 7 months ago |
|
|
CoreDNS Cache Poisoning via a birthday attack in github.com/coredns/coredns | Unknown | 2 years ago | 7 months ago |
|
|
CoreDNS Vulnerable to DoQ Memory Exhaustion via Stream Amplification in github.com/coredns/coredns | Unknown | 1 year ago | 7 months ago |
|
|
Improper random number generation in github.com/coredns/coredns | Unknown | 2 years ago | 7 months ago |
|
|
CoreDNS may return invalid cache entries in github.com/coredns/coredns | Unknown | 2 years ago | 7 months ago |
|
|
CoreDNS gRPC/HTTPS/HTTP3 servers lack resource limits, enabling DoS via unbounded connections and oversized messages in github.com/coredns/coredns | Unknown | 8 months ago | 7 months ago |
|
|
CoreDNS: DNS Cache Pinning via etcd Lease ID Confusion in github.com/coredns/coredns | Unknown | 1 year ago | 7 months ago |
Page 1