📦

routinator

Vendor: nlnetlabs

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 1 Remote Access
Total CVEs 17 Total Indexed
Avg. EPSS 0.78% Exploit Prob.
Latest CVE CVE-2026-49235 Jun 08

Security Vulnerability Index

Page 2 / 2
7.5 CVSS

NLnet Labs Routinator prior to 0.10.0 produces invalid RTR payload if an RPKI CA uses too large values in the max-length parameter in a ROA. This will lead to RTR clients such as routers to reject the RPKI data set, effectively disabling Route Origin Validation.

EPSS: 0.93%
7.4 CVSS

An issue was discovered in NLnet Labs Routinator 0.1.0 through 0.7.1. It allows remote attackers to bypass intended access restrictions or to cause a denial of service on dependent routing systems by strategically withholding RPKI Route Origin Authorisation ".roa" files or X509 Certificate Revocation List files from the RPKI relying party's view.

EPSS: 0.75%