Security News Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone TheHackerNews Daniel Bender 17 Sep 2026 Share Unbound 1.26.1 fixes a critical DNSSEC heap overflow that malicious zones can trigger, with possible remote code execution.