CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-73283 MEDIUM

openssh: OpenSSH: Tunnel forwarding restriction bypass

CVSS 5.4 EPSS 0.09% Aug 11, 2026
CVE-2026-73282 MEDIUM

openssh: OpenSSH: Information disclosure and data corruption via use-after-free in ssh client

CVSS 5.6 EPSS 0.16% Aug 11, 2026
CVE-2026-73281 LOW

openssh: OpenSSH: ssh-agent allows remote execution of local operations

CVSS 3.5 EPSS 0.16% Aug 11, 2026
CVE-2026-60002 CRITICAL

openssh: OpenSSH: Use-after-free vulnerability during host key re-exchange on the client side

CVSS 9.4 EPSS 0.47% Jul 8, 2026
CVE-2026-60001 MEDIUM

openssh: OpenSSH: Brute-force attacks facilitated due to insufficient authentication delay

CVSS 6.5 EPSS 0.73% Jul 8, 2026
CVE-2026-60000 HIGH

openssh: OpenSSH: Denial of Service via excessive GSSAPI authentication attempts

CVSS 7.5 EPSS 1.16% Jul 8, 2026
CVE-2026-59999 HIGH

openssh: OpenSSH sshd: Security bypass due to incorrect handling of forwarding and tunneling options

CVSS 7.5 EPSS 0.16% Jul 8, 2026
CVE-2026-59998 MEDIUM

openssh: OpenSSH: Undocumented GSSAPIStrictAcceptorCheck behavior impacts security in Windows Active Directory

CVSS 6.5 EPSS 0.47% Jul 8, 2026
CVE-2026-59997 MEDIUM

openssh: OpenSSH: SFTP security bypass due to command-line argument parsing flaw

CVSS 5.4 EPSS 0.47% Jul 8, 2026
CVE-2026-59996 MEDIUM

openssh: OpenSSH: `scp` file misplacement vulnerability during remote copy

CVSS 5.4 EPSS 0.55% Jul 8, 2026
CVE-2026-59995 MEDIUM

openssh: OpenSSH: sftp client allows attacker to control downloaded file location

CVSS 5.4 EPSS 0.25% Jul 8, 2026
CVE-2026-55654 LOW

Openssh: heap out-of-bounds read in red hat enterprise linux versions of openssh gssapi indicator cleanup due to missing null sentinel termination

CVSS 3.7 EPSS 0.65% Jun 23, 2026
CVE-2026-55655 MEDIUM

Openssh: local mitm of x11 forwarding via abstract unix socket pre-binding in red hat enterprise linux openssh client versions

CVSS 6.1 EPSS 0.12% Jun 23, 2026
CVE-2026-55653 MEDIUM

Openssh: double free in red hat enterprise linux versions of openssh dh-gex client path during fips known-group validation leads to client-side denial of servi…

CVSS 6.5 EPSS 0.51% Jun 23, 2026
CVE-2026-35414 HIGH

OpenSSH: OpenSSH: Security bypass via mishandling of authorized_keys principals option

CVSS 8.1 EPSS 0.24% Apr 2, 2026
CVE-2026-35388 LOW

OpenSSH: OpenSSH: Low integrity impact from unconfirmed proxy-mode multiplexing sessions

CVSS 2.5 EPSS 0.23% Apr 2, 2026
CVE-2026-35387 MEDIUM

OpenSSH: OpenSSH: Information disclosure due to unintended cryptographic algorithm usage

CVSS 6.5 EPSS 0.50% Apr 2, 2026
CVE-2026-35386 HIGH

OpenSSH: OpenSSH: Arbitrary command execution via shell metacharacters in username

CVSS 8.1 EPSS 0.36% Apr 2, 2026
CVE-2026-35385 HIGH

OpenSSH: OpenSSH: Privilege escalation via scp legacy protocol when not preserving file mode

CVSS 8.1 EPSS 0.63% Apr 2, 2026
CVE-2026-3497 MEDIUM

openssh: OpenSSH GSSAPI: Information disclosure or denial of service due to uninitialized variables

CVSS 6.9 EPSS 1.25% Mar 12, 2026
CVE-2025-61985 MEDIUM

openssh: OpenSSH: Null character in ssh:// URI can lead to code execution via ProxyCommand

CVSS 5.3 EPSS 0.12% Oct 6, 2025
CVE-2025-61984 MEDIUM

openssh: OpenSSH: Control characters in usernames can lead to code execution via ProxyCommand

CVSS 5.3 EPSS 0.29% Oct 6, 2025
CVE-2025-32728 MEDIUM

openssh: OpenSSH SSHD Agent Forwarding and X11 Forwarding

CVSS 4.3 EPSS 0.20% Apr 10, 2025
CVE-2025-26466 MEDIUM

Openssh: denial-of-service in openssh

CVSS 5.9 EPSS 39.85% Feb 28, 2025
CVE-2025-26465 MEDIUM

Openssh: machine-in-the-middle attack if verifyhostkeydns is enabled

CVSS 6.8 EPSS 7.72% Feb 18, 2025

Showing 1 to 25 CVEs · page 1 (more available)