CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1 (more results available)

CVE-2026-59851 HIGH

Libssh: libssh: authentication bypass via missing gssapi principal check

CVSS 8.8 EPSS 0.49% Jul 21, 2026
CVE-2026-59850 HIGH

Libssh: libssh: use-after-free via data callbacks on closed channels

CVSS 7.5 EPSS 0.35% Jul 21, 2026
CVE-2026-59849 HIGH

Libssh: libssh: denial of service via automatic certificate authentication loop

CVSS 7.5 EPSS 0.44% Jul 21, 2026
CVE-2026-59848 MEDIUM

Libssh: libssh: denial of service via sftp responses with unknown request ids

CVSS 5.3 EPSS 0.34% Jul 21, 2026
CVE-2026-59847 HIGH

Libssh: libssh: integrity downgrade via openssl aes-gcm tag verification

CVSS 7.5 EPSS 0.33% Jul 21, 2026
CVE-2026-59846 LOW

Libssh: libssh: information disclosure via proxycommand %r username expansion

CVSS 3.9 EPSS 0.12% Jul 21, 2026
CVE-2026-59844 MEDIUM

Libssh: libssh: denial of service via oversized sftp read length

CVSS 6.5 EPSS 0.57% Jul 21, 2026
CVE-2026-59845 MEDIUM

Libssh: libssh: denial of service via unchecked proxycommand fork() failure

CVSS 5.9 EPSS 0.10% Jul 21, 2026
CVE-2026-59843 MEDIUM

Libssh: libssh: denial of service via zero advertised channel packet size

CVSS 6.5 EPSS 0.73% Jul 21, 2026
CVE-2026-59842 MEDIUM

Libssh: libssh: information disclosure via short gssapi curve25519 public key

CVSS 5.3 EPSS 0.49% Jul 21, 2026
CVE-2026-15370 HIGH

Libssh: libssh: stack buffer overflow in sftp server longname construction

CVSS 7.3 EPSS 0.17% Jul 21, 2026
CVE-2025-14821 HIGH

Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows

CVSS 7.8 EPSS 0.13% Apr 7, 2026
CVE-2026-0965 LOW

Libssh: libssh: denial of service via improper configuration file handling

CVSS 3.3 EPSS 0.16% Mar 26, 2026
CVE-2026-0967 MEDIUM

Libssh: libssh: denial of service via inefficient regular expression processing

CVSS 5.5 EPSS 0.22% Mar 26, 2026
CVE-2026-0968 LOW

Libssh: libssh: denial of service due to malformed sftp message

CVSS 3.1 EPSS 0.44% Mar 26, 2026
CVE-2026-0964 MEDIUM

Libssh: improper sanitation of paths received from scp servers

CVSS 6.3 EPSS 0.41% Mar 26, 2026
CVE-2026-0966 HIGH

Libssh: libssh: denial of service via zero-length input in ssh_get_hexa()

CVSS 8.2 EPSS 0.58% Mar 26, 2026
CVE-2026-3731 MEDIUM

libssh SFTP Extension Name sftp.c sftp_extensions_get_data out-of-bounds

CVSS 6.9 EPSS 1.16% Mar 8, 2026
CVE-2025-5449 MEDIUM

Libssh: integer overflow in libssh sftp server packet length validation leading to denial of service

CVSS 6.5 EPSS 0.88% Jul 25, 2025
CVE-2025-8114 MEDIUM

Libssh: null pointer dereference in libssh kex session id calculation

CVSS 4.7 EPSS 0.22% Jul 24, 2025
CVE-2025-5987 HIGH

Libssh: invalid return code for chacha20 poly1305 with openssl backend

CVSS 8.1 EPSS 1.61% Jul 7, 2025
CVE-2025-5351 MEDIUM

Libssh: double free vulnerability in libssh key export functions

CVSS 6.5 EPSS 0.57% Jul 4, 2025
CVE-2025-5372 HIGH

Libssh: incorrect return code handling in ssh_kdf() in libssh

CVSS 8.8 EPSS 0.47% Jul 4, 2025
CVE-2025-5318 HIGH

Libssh: out-of-bounds read in sftp_handle()

CVSS 8.1 EPSS 1.84% Jun 24, 2025
CVE-2023-6004 MEDIUM

Libssh: proxycommand/proxyjump features allow injection of malicious code through hostname

CVSS 4.8 EPSS 0.45% Jan 3, 2024

Showing 1 to 25 CVEs · page 1 (more available)