CVE-2026-67276: Bypassing SSH Authentication in MikroTik RouterOS

This text was generated using artificial intelligence (AI).CVE-2026-67276 affects SSH authentication in MikroTik RouterOS and has a CVSS score of 9.2 (CVSS 4.0). The vulnerability could allow an attacker to gain SSH command-line access as the target user without possessing the user’s private key. CERT Polska has reported active exploitation since September 2, 2026. MikroTik released security updates on September 3, 2026; CERT Polska coordinated the disclosure on September 5, 2026.

Are my systems affected? Check now →