Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-42508

Опубликовано: 27 мая 2026
Источник: msrc
CVSS3: 9.1
EPSS Низкий

Описание

Invoking auth bypass via unenforced @revoked status in golang.org/x/crypto/ssh/knownhosts

EPSS

Процентиль: 44%
0.00568
Низкий

9.1 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
ubuntu
2 месяца назад

Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.

CVSS3: 7.4
redhat
2 месяца назад

Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.

CVSS3: 9.1
nvd
2 месяца назад

Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.

CVSS3: 9.1
debian
2 месяца назад

Previously, a revoked 'SignatureKey' belonging to a CA was not correct ...

CVSS3: 7.4
redos
22 дня назад

Уязвимость portainer-ce

EPSS

Процентиль: 44%
0.00568
Низкий

9.1 Critical

CVSS3