Known Vulnerabilities for OpenSSH by OpenBSD
Listed below are 10 of the newest known vulnerabilities associated with "OpenSSH" by "OpenBSD".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-73283 json | In sshd in OpenSSH before 10.5, the restrict keyword (in authorized_keys) was supposed to be applicable to tunnel forwarding ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73282 json | In ssh in OpenSSH before 10.5, a use-after-free for realloc data can occur if a certain pair of remote-forwarding operations ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73281 json | In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including op... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-60002 json | ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outco... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-60001 json | sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay. | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-60000 json | sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of service (resource consumption from excessive authent... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59999 json | In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not. | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59998 json | sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the ser... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59997 json | internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a ... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59996 json | scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two... | Not Provided | 2026-07-08 | 2026-07-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Openbsd | Openssh | 8.4 | |||
| Application | Openbsd | Openssh | 8.4 | |||
| Application | Openbsd | Openssh | 8.3 | |||
| Application | Openbsd | Openssh | 8.3 | |||
| Application | Openbsd | Openssh | 8.3 | |||
| Application | Openbsd | Openssh | 8.2 | |||
| Application | Openbsd | Openssh | 8.1 | |||
| Application | Openbsd | Openssh | 8.1 | |||
| Application | Openbsd | Openssh | 8.0 | |||
| Application | Openbsd | Openssh | 8.0 | |||
| Application | Openbsd | Openssh | 7.9 | |||
| Application | Openbsd | Openssh | 7.9 | |||
| Application | Openbsd | Openssh | 7.8 | |||
| Application | Openbsd | Openssh | 7.8 | |||
| Application | Openbsd | Openssh | 7.7 | |||
| Application | Openbsd | Openssh | 7.7 | |||
| Application | Openbsd | Openssh | 7.6 | |||
| Application | Openbsd | Openssh | 7.6 | |||
| Application | Openbsd | Openssh | 7.5 | |||
| Application | Openbsd | Openssh | 7.5 |