SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityAnalyzed

CVE-2026-49233

This allows for path traversal by having a module name containing .., potentially providing an attacker access to the entire Routinator rsync cache.

HIGH 8.3EPSS 0.45%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (0.45%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

Routinator does not properly check the module component of rsync URIs, which are used to create the file system paths for the Routinator cache. This allows for path traversal by having a module name containing .., potentially providing an attacker access to the entire Routinator rsync cache.

CVSS 4.0
8.3 HIGHCVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
EPSS
0.45% probability · 38th percentile
CISA KEV
Not listed
Weakness
CWE-22
Affected
nlnetlabs/routinator
Source
sep@nlnetlabs.nl

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.