← Back to feed Search feed

OpenSSH vulnerabilities

14 entries matching openssh — updated 2026-09-18 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2026-69397Microsoft OpenSSH for Windows Remote Code Execution VulnerabilityHIGH7.546%ileMicrosoft2026-09-08
CVE-2026-73282In ssh in OpenSSH before 10.5, a use-after-free for realloc data can occur if a certain pair of remote-forwarding operatMEDIUM4.86%ileMicrosoft2026-08-11
CVE-2026-73281In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, includiLOW3.55%ileMicrosoft2026-08-11
CVE-2026-73283In sshd in OpenSSH before 10.5, the restrict keyword (in authorized_keys) was supposed to be applicable to tunnel forwarLOW2.51%ileMicrosoft2026-08-11
CVE-2026-60002ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This HIGH7.723%ileMicrosoft2026-07-14
CVE-2026-60001sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay.MEDIUM6.522%ileMicrosoft2026-07-14
CVE-2026-59999In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did notMEDIUM5.96%ileMicrosoft2026-07-14
CVE-2026-59998sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if thMEDIUM4.88%ileMicrosoft2026-07-14
CVE-2026-59995sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is uMEDIUM4.217%ileMicrosoft2026-07-14
CVE-2026-59996scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs betweeMEDIUM4.217%ileMicrosoft2026-07-14
CVE-2026-59997internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important MEDIUM4.27%ileMicrosoft2026-07-14
CVE-2026-60000sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of service (resource consumption from excessive auLOW3.738%ileMicrosoft2026-07-14
CVE-2026-55655Openssh: local mitm of x11 forwarding via abstract unix socket pre-binding in red hat enterprise linux openssh client veMEDIUM5.00%ileMicrosoft2026-06-09
CVE-2026-55653Openssh: double free in red hat enterprise linux versions of openssh dh-gex client path during fips known-group validatiMEDIUM4.322%ileMicrosoft2026-06-09