Potential bypass of domain name filter by crafting a DNS request with multiple questions, with the first question being legitimate.
Depends on a local attackers ability to craft multiple questions and the remote DoH server supporting them.
{
"cwe_ids": [
"CWE-436",
"CWE-693"
],
"severity": "MODERATE",
"github_reviewed_at": "2026-07-07T20:03:49Z",
"github_reviewed": true,
"nvd_published_at": null
}