When sending a specifically crafted non-UTF-8 string as select-asn query parameter to the /api/v1/origins endpoint, Routinator crashes.
This only affects users who allow API access from untrusted networks.
References
| Link | Resource |
|---|---|
| https://www.nlnetlabs.nl/downloads/routinator/CVE-2026-49234.txt | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-06-08 15:16
Updated : 2026-07-23 07:10
NVD link : CVE-2026-49234
Mitre link : CVE-2026-49234
CVE.ORG link : CVE-2026-49234
JSON object : View
Products Affected
nlnetlabs
- routinator
CWE
