Report: Essential Guide: CVE-2026-33599 - Out-of-bounds read in service discovery

Report: Essential Guide: CVE-2026-33599 - Out-of-bounds read in service discovery

CVE ID :CVE-2026-33599 Published : April 22, 2026, 2:16 p.m. | 58 minutes ago Description :A rogue backend can send a crafted SVCB response to a Discovery of Designated Resolvers request, when requested via either the autoUpgrade (Lua) option to newServer or auto_upgrade (YAML) settings. DDR upgrade is not enabled by default. Severity: 3.1 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
LOW
Published
April 22, 2026