CVE-2026-86128EPSS p27.0%

CVE-2026-86128CVE-2026-86128

Description

A NULL pointer dereference vulnerability in Fireware OS's NetFlow packet-processing feature allows a remote, unauthenticated attacker to cause a denial of service by sending a specially crafted IPv6 packet.

Scoring

EPSS0.36% probability of exploitation · percentile 27.0% · 2026-10-05T12:00:23Z
Last modified2026-09-30
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.