CVE-2026-33601
If you use the zoneToCache function with a malicious authoritative server, an attacker can send a zone that result in a null pointer dereference, caused by a missing consistency check and leading to a denial of service.
More information : https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-powerdns-2026-03.html
