High severity7.5NVD Advisory· Published Jun 8, 2026· Updated Jun 12, 2026
CVE-2026-49235
CVE-2026-49235
Description
When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
routinatorcrates.io | < 0.15.2 | 0.15.2 |
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)
Patches
Vulnerability mechanics
References
4- github.com/advisories/GHSA-5qf9-cf9c-hjc6ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2026-49235ghsaADVISORY
- www.nlnetlabs.nl/downloads/routinator/CVE-2026-49235.txtnvdVendor AdvisoryWEB
- github.com/NLnetLabs/routinator/releases/tag/v0.15.2ghsaWEB
News mentions
1- Nlnetlabs Routinator: Three High-Severity Vulnerabilities Disclosed TogetherVypr Intelligence · Jun 8, 2026