CVE-2026-53581
OPNsense NTP Configuration Path Traversal Leading to Root File Overwrite
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
OPNsense platforms contain a path traversal vulnerability in the NTP configuration module that allows an authenticated attacker to overwrite arbitrary system files as root. Given OPNsense's common deployment as an internet-facing firewall, this vulnerability could lead to system compromise if the NTP configuration is r