Designate
This hub aggregates every CVE we track for Designate, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
1
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM3CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2
0
2024-102026-09
Latest CVEs
The 4 most recently published vulnerabilities affecting Designate.
- CVE-2026-71194In OpenStack Designate before 22.0.2, the mDNS handler performs pool-blind lookups when resolving record queries and NOTIFY requests. When two zones with the same name exist across different pools,...6.8
- CVE-2026-71193In OpenStack Designate before 22.0.1, zone creation checks (_is_subzone, _is_superzone, and the duplicate-zone DB constraint) are scoped to the target pool only. An authenticated user can bypass th...9.6
- CVE-2015-5694Designate does not enforce the DNS protocol limit concerning record set sizes6.5
- CVE-2015-5695Designate 2015.1.0 through 1.0.0.0b1 as packaged in OpenStack Kilo does not enforce RecordSets per domain, and Records per RecordSet quotas when processing an internal zone file transfer, which mig...6.5
Product normalization is registry-driven with AI assist and human review. How it works