HIGH 8.1 GitHub

CVE-2026-54591

asyncssh has SCP Path Traversal to Arbitrary File Write

| | | |---|---| | Product | asyncssh (all versions through 2.23.0) | | Related | CVE-2019-6111 (same class in OpenSSH) | | Fix | AsyncSSH 2.23.1 | A malicious SSH server can write arbitrary files on the asyncssh SCP client's filesystem by sending filenames containing `../` traversal sequences. The SCP receive path does not currently sanitize server-provided filenames. By chaining directory traversals via the `D` (directory) action, an attacker can escape any target directory and overwrite `~/.b

Affected Products

References

Published: 2026-08-26 · Source: GitHub · Feed updated: 2026-08-26
This high severity vulnerability with a CVSS score of 8.1 was published on 2026-08-26 via GitHub. Affected: pip/asyncssh <= 2.23.0.
vulnfeed aggregates 11364 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.