There also is another issue that has been introduced in 7.22 and I believe is related to the disabling of EEE (energy efficient ethernet), but I am not sure.
We have a location where a Draytek router is connected to an ethernet port of an RB5009 and it fails to work correctly after some time. The Draytek router (which is operating as a downstream router for a tenant) obtains a lease, but the systems behind it have no traffic. Downgrade to 7.21.5 fixes it. SUP-219648.
I now support and distribute IPv6 addresses on my flat home network with maintaining my local DNS server which is a pi-hole. I think it’s called SLAAC.
I’m going to stay on 7.21.5 until someone from Mikrotik guarantees the next long-term release addressed the issue you raised awareness of.
Yes, if you don't have dynamic interfaces (for example SSTP or PPPoE clients using your router as server) then you can disable the * entry with the all interface, and make a copy of it for each of your LAN interfaces, in this case your bridge interface. If you also use VLAN interfaces then add more copies for those too.
I set in my 7.22.1 configuration the IPv6 nd to advertise dna on bridge only, then upgraded to 7.23.2 and everything came back to life just fine. DHCP client got my cable modem's IP address without any issue.
For production, we use long-term, unless we require a specific feature or fix only available in stable.
At home, I prefer stable what allows me to play with new features. And with 2 teenagers in the house, the network performance monitoring is tight, good for testing
This was Mikrotik’s Support suggestion on the issue I was dealing with. Mind you, I emailed them on July 22nd so I can no longer attempt this since I am on 7.21.5.
I don’t think Mikrotik is aware of the issue, these forums, or they don’t care
Strod seems annoyed that the issue was being discussed in the forums and not the proper support channel BUT at the top of the announcement when you vote, it says to post (to the thread) about the device, configuration, and unexpected symptoms.
What is safe anyways? You cannot rely solely on a router to make your network safe, if you open access and use low quality passwords nothing will keep you safe...
In this particular case RouterOS versions have been specifically released to address a known vulnerability that can compromise routers that use PPP so you should upgrade to make your network a bit safer, and your safest bet is to go for a long-term version 7.21.5 since there is usually the least chance of something else being broken...
And strictly speaking what you are showing is routerboard firmware version (or BIOS in PC terms), RouterOS version can be shown with:
system/package/print where name=routeros
Columns: NAME, VERSION, BUILD-TIME, SIZE
# NAME VERSION BUILD-TIME SIZE
0 routeros 7.21.5 2026-07-03 10:23:40 11.7MiB
although these have been synchronised for some time now...