openwrt ▾
›
master ▾
›
vulnerability
›
CVE-2026-33611
Component Overview
Vulnerability Overview
Name
CVE-2026-33611
Source
NVD (
link
)
Debian (
link
)
Description
An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.
CWEs
CWE-190
Published Date
Apr 22, 2026
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://docs.powerdns.com/authoritative/security-advisories/powerdns-advisory-powerdns-2026-05.html
Broken Link
Analysis
#
Affected Component
Analysis
pdns
Exploitable
Vulnerability Ratings
#
6.5
CVSSv31
4.9
CVSSv31
NaN
other
Others affected component
#
Name
Project
Project Version
Version
Status
pdns
openwrt
openwrt-25.12
4.9.7-r1
Exploitable