CVE-2026-71193
OpenStack Designate Zone Creation Vulnerability Allows DNS Hijack and DoS
Halo Surface Signal: 2 out of 5 — less likely to be public-facing.
An authenticated user can create overlapping DNS zones in OpenStack Designate, potentially hijacking other tenants' traffic or causing denial of service. Exploitation requires a specific, non-default configuration involving multiple pools and the AttributeFilter scheduler.