connect24h[verified]@connect24hDisclosure
The post announces four high‑severity CVEs in NSD, explains their technical nature, and notes that patch version 4.14.3 is available; no PoC or active exploitation is mentioned.
Yasuhiro Morishita[verified]@OrangeMorishitaDisclosure
The post announces two DNS‑related CVEs: CVE‑2026‑12246 (APL record bug that can destroy secondary server zone data) and CVE‑2026‑12490 (XFR‑over‑TLS flaw that bypasses client‑certificate authentication).
日本レジストリサービス(JPRS)@JPRS_officialDisclosure
The post announces that vulnerability information for four NSD CVEs has been published. No details on exploits, patches, or PoCs are provided.
Open Source Security mailing list@oss_securityPatch
NLnet Labs announced that four high-severity CVEs (including a heap overflow, DNS over TLS denial, stack write, and client certificate bypass) have been fixed in NSD 4.14.3.
日本レジストリサービス(JPRS)@JPRS_officialDisclosure
The newsletter announces the publication of vulnerability information for several CVE‑2026‑12xxx identifiers, providing only the CVE numbers without further technical or exploitation details.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
The text gives a simple CVE entry with a brief technical description and a link to a vulnerability detail page, but does not mention PoC, exploit, or patch information.