Disclosure summary
In September 2026, an attack chain combining two vulnerabilities in MikroTik RouterOS, which is widely deployed at network edges, was found to be actively exploited in the wild, al
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
CIP Blog · RSS-d669ebfee0228ee3ca1c7645eeef530b38e
Open original source · Updated Sep 21, 2026
MikroTik RouterOS “MikroTrick” Attack Chain (CVE-2026-67276 · CVE-2026-86060) Analysis
CVE mention in publisher metadata; check the original affected versions.
Original records & references
- NIST NVD record
- CVE Program record
- blog.criminalip.io — Publisher advisory
PUBLISHED 2026-09-21T20:30:51-04:00
MODIFIED 2026-09-21T20:30:51-04:00
INGESTED 2026-10-08T12:05:33-04:00