๐Ÿ” CVE Alert

CVE-2026-96609

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Robur Albatross 1.0.0 through 2.x before 2.7.2 does not limit use of the ring buffer, leading to an albatross-console loop with no recognized termination condition. This is only exploitable by users who can send console subscription commands to unikernels that produce sufficient log output to fill the ring buffer (1024 lines). It is not exploitable by unauthorized clients.

CWE CWE-770
Vendor robur
Product albatross
Published Sep 23, 2026
Last Updated Sep 23, 2026
Stay Ahead of the Next One

Get instant alerts for robur albatross

Be the first to know when new unknown vulnerabilities affecting robur albatross are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Robur / Albatross
1.0.0 < 2.7.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/robur-coop/albatross/pull/273 osv.dev: https://osv.dev/vulnerability/OSEC-2026-09