MikroTik patches three RouterOS flaws, including SSH auth bypass
MikroTik's September 2026 security release fixes three RouterOS vulnerabilities: CVE-2026-67276 allows SSH authentication bypass with a forged RSA key, CVE-2026-86060 enables privilege escalation after login, and CVE-2026-67277 causes denial of service via the btest service. Versions up to 7.24.2, 7.23.4 and 6.49.21 are affected.
- CVE-2026-67276: SSH auth bypass grants full admin access without credentials
- CVE-2026-86060: privilege escalation via crafted arguments in an SSH session
- CVE-2026-67277: unauthenticated btest reads kernel memory and crashes routers
- Affected versions up to 7.24.2, 7.23.4 and 6.49.21
Read next
Security