[vulnfeed] 2 critical CVEs — 2026-09-05 20:00 UTC
vulnfeed
Critical alert — 2026-09-05 22:07 UTC
2 new critical CVEs
in the last 5 hours — 2 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-67276CRITICAL
RouterOS does not compare the complete RSA public key when matching an SSH authentication request to an author
RouterOS does not compare the complete RSA public key when matching an SSH authentication request to an authorized user key, checking the key type and modulus but omitting the exponent. Because signat
CVSS 9.2
CVE-2026-86060CRITICAL
RouterOS contains an argument-handling flaw in the SSH login
path involving usernames that begin with a prohib
RouterOS contains an argument-handling flaw in the SSH login
path involving usernames that begin with a prohibited character, allowing for the trusted RouterOS policy mask to be changed, leading to pr
CVSS 9.2
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: