CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-93345 HIGH

MikroTik RouterOS < 7.25beta4 Improper Input Validation DoS via BGP Labelled-VPN NLRI

CVSS 8.7 EPSS 0.49% Sep 22, 2026
CVE-2026-89028 HIGH

MikroTik RouterOS < 7.24 Heap Corruption via SMB1 SessionSetupAndX

CVSS 8.2 EPSS 0.58% Sep 16, 2026
CVE-2026-56719 MEDIUM

MikroTik RouterOS < 7.24 Out-of-Bounds Read via SMB1 SessionSetupAndX

CVSS 6.3 EPSS 0.39% Sep 16, 2026
CVE-2026-89021 MEDIUM

MikroTik RouterOS Path Traversal via Container OCI/tar Image Extraction

CVSS 6.9 EPSS 0.38% Sep 14, 2026
CVE-2026-89020 MEDIUM

MikroTik RouterOS Stack Buffer Overflow via TFTP URL Path

CVSS 5.3 EPSS 0.49% Sep 14, 2026
CVE-2026-86060 KEV CRITICAL

SSH session privilege manipulation via a crafted username in Mikrotik RouterOS

CVSS 9.2 EPSS 1.85% Sep 5, 2026
CVE-2026-67281 HIGH

Unauthenticated file read in Mikrotik RouterOS

CVSS 8.7 EPSS 0.73% Sep 5, 2026
CVE-2026-67279 KEV MEDIUM

SSH Pre-Authentication Rekey State Bypass in MikroTik RouterOS

CVSS 6.9 EPSS 1.03% Sep 5, 2026
CVE-2026-67278 MEDIUM

TLS server impersonation possible in Mikrotik RouterOS

CVSS 6.3 EPSS 0.25% Sep 5, 2026
CVE-2026-67277 KEV HIGH

Kernel memory disclosure and denial of service in MikroTik RouterOS btest service

CVSS 8.8 EPSS 1.56% Sep 5, 2026
CVE-2026-67276 CRITICAL

SSH user impersonation possible in Mikrotik RouterOS

CVSS 9.2 EPSS 6.45% Sep 5, 2026
CVE-2026-14227 MEDIUM

Insufficient session expiration in MikroTik RouterOS

CVSS 6.9 EPSS 0.38% Jul 30, 2026
CVE-2026-16347 HIGH

Improper restriction of excessive authentication attempts in MikroTik RouterOS and Cloud Hosted Router

CVSS 8.7 EPSS 0.39% Jul 28, 2026
CVE-2025-42611 MEDIUM

Improper certificate validation in multiple RouterOS services

CVSS 6.5 EPSS 0.19% May 5, 2026
CVE-2026-7668 MEDIUM

MikroTik RouterOS SCEP Endpoint scep.p ASN1_STRING_data out-of-bounds

CVSS 6.9 EPSS 0.50% May 2, 2026
CVE-2025-10948 HIGH

MikroTik RouterOS libjson.so print parse_json_element buffer overflow

CVSS 8.7 EPSS 0.78% Sep 25, 2025
CVE-2025-6563 MEDIUM

Cross-site scripting via dst parameter in RouterOS WiFi hotspot

CVSS 4.8 EPSS 0.70% Jul 3, 2025
CVE-2025-6443 HIGH

Mikrotik RouterOS VXLAN Source IP Improper Access Control Vulnerability

CVSS 7.2 EPSS 0.57% Jun 25, 2025
CVE-2024-54952 HIGH

MikroTik RouterOS 6.40.5, the SMB service contains a memory corruption vulnerability. Remote, unauthenticated attackers can exploit this issue by sending speci…

CVSS 7.5 EPSS 0.55% May 29, 2025
CVE-2024-54772 MEDIUM

An issue was discovered in the Winbox service of MikroTik RouterOS long-term release v6.43.13 through v6.49.13 and stable v6.43 through v7.17.2. A patch is ava…

CVSS 5.4 EPSS 0.79% Feb 11, 2025
CVE-2023-32154 HIGH

Mikrotik RouterOS RADVD Out-Of-Bounds Write Remote Code Execution Vulnerability

CVSS 7.5 EPSS 0.61% May 3, 2024
CVE-2023-41570 MEDIUM

MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.

CVSS 5.3 EPSS 0.47% Nov 14, 2023
CVE-2023-30800 HIGH

MikroTik RouterOS Web Interface Heap Corruption

CVSS 7.5 EPSS 1.69% Sep 7, 2023
CVE-2023-30799 CRITICAL

MikroTik RouterOS Administrator Privilege Escalation

CVSS 9.1 EPSS 1.43% Jul 19, 2023
CVE-2020-20021 HIGH

An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the SSH daemon.

CVSS 7.5 EPSS 1.01% Jul 12, 2023

Showing 1 to 25 CVEs · page 1 (more available)