Critical Vulnerabilities Affect Lantronix G520 Series Cellular Gateways
Two CVEs enable arbitrary code execution and undermine cryptographic signature verification in widely deployed industrial gateways
Key Takeaways
- Two critical CVEs (CVE-2026-84409, CVE-2026-91191) affect Lantronix G520 Series Cellular Gateway firmware 2.6.0.4R6_stable.
- CVE-2026-84409 combines cross-site scripting with root-level command execution via the update mechanism.
- CVE-2026-91191 undermines cryptographic signature verification and exposes a production private key, allowing unauthorized package acceptance.
- Both vulnerabilities could allow arbitrary code execution with root privileges.
- Lantronix has released firmware version 2.6.0.7R6 as a remediation; users are strongly advised to upgrade.
Related Security News

CISA Adds Critical Pre-Auth RCE Vulnerability in MikroTik RouterOS to KEV Catalog
CISA has added a critical pre-authentication remote code execution vulnerability in MikroTik RouterOS to its Known Exploited Vulnerabilities catalog, mandating patching for U.S. federal civilian executive branch agencies. The flaw allows remote attackers to execute arbitrary code or cause denial-of-service without authentication. MikroTik has released patched versions 7.12.3 and 7.13.1rc to address the vulnerability.



