VendorsCoreDNS.iocorednsany version
Vulnerabilities

CoreDNS.io CoreDNS any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

16CVEs
CVE-2026-35579
CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports
Published 2026-05-05 · Modified
9.8EPSS 0.008
CVE-2026-32934
CoreDNS DNS-over-QUIC unbounded goroutine growth leads to denial of service
Published 2026-05-05 · Analyzed
8.7EPSS 0.006
CVE-2026-32936
CoreDNS DoH GET path missing size validation causes CPU and memory amplification
Published 2026-05-05 · Analyzed
8.7EPSS 0.006
CVE-2026-33190
CoreDNS TSIG authentication bypass on encrypted DNS transports
Published 2026-05-05 · Analyzed
8.7EPSS 0.005
CVE-2026-33489
CoreDNS transfer plugin subzone ACL bypass via lexicographic zone comparison
Published 2026-05-05 · Analyzed
8.2EPSS 0.004
CVE-2026-26017
CoreDNS ACL Bypass
Published 2026-03-06 · Modified
7.7EPSS 0.005
CVE-2025-47950
CoreDNS Vulnerable to DoQ Memory Exhaustion via Stream Amplification
Published 2025-06-06 · Analyzed
7.5EPSS 0.012
CVE-2026-26018
CoreDNS Loop Detection Denial of Service Vulnerability
Published 2026-03-06 · Modified
7.5EPSS 0.008
CVE-2026-62309
CoreDNS: proxyproto plugin panics on PPv2 datagram with non-UDP transport — single 28-byte packet remote DoS
Published 2026-07-16 · Analyzed
7.5EPSS 0.007
CVE-2023-28452
An issue was discovered in CoreDNS through 1.10.1. There is a vulnerability in DNS resolving software, which triggers a resolver to ignore valid responses, thus causing denial of service for normal resolution. In an exploit, the attacker could just forge a response targeting the source port of a vulnerable resolver without the need to guess the correct TXID.
Published 2024-09-18 · Modified
7.5EPSS 0.006
CVE-2025-68151
CoreDNS gRPC/HTTPS/HTTP3 servers lack resource limits, enabling DoS via unbounded connections and oversized messages
Published 2026-01-08 · Analyzed
7.5EPSS 0.005
CVE-2023-30464
CoreDNS through 1.10.1 enables attackers to achieve DNS cache poisoning and inject fake responses via a birthday attack.
Published 2024-09-18 · Analyzed
7.5EPSS 0.004
CVE-2022-2837
A flaw was found in coreDNS. This flaw allows a malicious user to redirect traffic intended for external top-level domains (TLD) to a pod they control by creating projects and namespaces that match the TLD.
Published 2023-03-03 · Modified
6.1EPSS 0.004
CVE-2026-62299
CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) when a downstream plugin returns a response with no OPT record
Published 2026-07-16 · Analyzed
5.3EPSS 0.005
CVE-2022-2835
A flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that were accessed by the FQDN in a format of <service>.<namespace>.svc.
Published 2023-03-03 · Modified
4.4EPSS 0.002
CVE-2026-62994
CoreDNS `k8s_external` headless AXFR can emit an empty transfer batch that panics the `transfer` plugin
Published 2026-07-16 · Analyzed
3.7EPSS 0.005