CVE-2026-42389: Powerdns Recursor

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

This fix provides extra hardening for the 5.4.x branch by doing extra validation of incoming answers from authoritative servers.

Affected products

  • Powerdns Recursor: from 5.4.0, before 5.4.3 (fixed in 5.4.3)

Published 2026-06-25. Last modified 2026-06-25.