Known Vulnerabilities for Package Ssh by Golang

Listed below are 1 of the newest known vulnerabilities associated with "Package Ssh" by "Golang".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-56402 json NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the handleApprovalsResponse function that fails to ve... Not Provided 2026-06-23 2026-06-23
CVE-2026-56397 json SiYuan before v3.6.1 fails to sanitize package metadata and README content in the Bazaar marketplace, allowing malicious pack... Not Provided 2026-06-21 2026-06-24
CVE-2026-56395 json SiYuan before v3.6.1 fails to sanitize package metadata and README content in the Bazaar marketplace, allowing malicious pack... Not Provided 2026-06-21 2026-06-22
CVE-2026-56382 json Craft CMS (composer package craftcms/cms) versions >= 5.5.0 and <= 5.9.13 contain a remote code execution vulnerability in th... Not Provided 2026-06-21 2026-06-22
CVE-2026-56269 json Flowise before 3.1.0 (npm package flowise, versions 3.0.13 and earlier) uses a weak hardcoded default value 'Secre$t' for the... Not Provided 2026-06-24 2026-06-24
CVE-2026-55570 json SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, it does not escape the untrusted fields (name,... Not Provided 2026-06-24 2026-06-24
CVE-2026-54759 json SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, Lute's HTML sanitizer does not remove