CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-67192

highCVSS 8.1covered by 1 sourcefirst seen 2026-07-29
Xlight FTP Server before 3.9.5 contains a pre-authentication stack buffer overflow vulnerability that allows unauthenticated attackers to corrupt stack memory by sending malformed SSH packets when a GCM cipher is negotiated. Attackers can craft packets with an unvalidated length field passed directly to the GCM decrypt function, overwriting the stack cookie and return address to potentially achieve remote code execution before any authentication occurs.

⚡ Watch CVE-2026-67192

Get an email if CVE-2026-67192 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-67192

CVE.org record

Embed the live status

CVE-2026-67192 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-67192 status](https://www.csirts.com/badge/CVE-2026-67192)](https://www.csirts.com/cve/CVE-2026-67192)