CVE-2026-33599
LOW
NVD
CVSS Score
3.1
Severity
LOW
Published
Apr 22, 2026
Vendor
unknown
Description
A rogue backend can send a crafted SVCB response to a Discovery of Designated Resolvers request, when requested via either the autoUpgrade (Lua) option to newServer or auto_upgrade (YAML) settings. DDR upgrade is not enabled by default.