CVE-2026-49235High▾ TwilightRoutinator crashes when encountering maliciously crafted RRDP XML files
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 41.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 7.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via GHSA
Last analysed / modified upstream
0.4%
0.4% → 0.4%
When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes.
routinator <= 0.15.1Upgrade to a patched release:
routinator 0.15.2Connected by shared product, vendor, weakness, or advisory.
CVE-2026-49233HighRoutinator has cache path traversal when processing the module component of rsync URIs
CVE-2026-49234High· 7.5Routinator crashes when sending a maliciously crafted select-asn query parameter
CVE-2026-33818High· 7.5Enforce maximum recursion depth in encoding/asn1
CVE-2020-3563High· 8.6A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device
CVE-2020-3554High· 7.5A vulnerability in the TCP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) conditi…
CVE-2020-3533High· 8.6A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly.…