Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 44

Количество 44

github логотип

GHSA-f5wc-c3c7-36mc

3 месяца назад

golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys

CVSS3: 9.1
EPSS: Низкий
ubuntu логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий
msrc логотип

CVE-2026-39832

4 месяца назад

Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-39832

4 месяца назад

When adding a key to a remote agent constraint extensions such as rest ...

CVSS3: 9.1
EPSS: Низкий
redos логотип

ROS-20260709-73-0027

2 месяца назад

Уязвимость portainer-ce

CVSS3: 8.7
EPSS: Низкий
rocky логотип

RLSA-2026:37410

2 месяца назад

Important: buildah security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37410

2 месяца назад

ELSA-2026-37410: buildah security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:36199

2 месяца назад

Important: buildah security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-36199

около 2 месяцев назад

ELSA-2026-36199: buildah security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:35833

2 месяца назад

Important: container-tools:rhel8 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-35833

2 месяца назад

ELSA-2026-35833: container-tools:ol8 security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:37123

2 месяца назад

Important: podman security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37123

2 месяца назад

ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:37072

2 месяца назад

Important: podman security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-37072

около 2 месяцев назад

ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20838-1

4 месяца назад

Security update for hauler

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20833-1

4 месяца назад

Security update for trivy

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21069-1

3 месяца назад

Security update for google-guest-agent

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-f5wc-c3c7-36mc

golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys

CVSS3: 9.1
1%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
4 месяца назад
redhat логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
4 месяца назад
msrc логотип
CVE-2026-39832

Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent

CVSS3: 9.1
1%
Низкий
4 месяца назад
debian логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as rest ...

CVSS3: 9.1
1%
Низкий
4 месяца назад
redos логотип
ROS-20260709-73-0027

Уязвимость portainer-ce

CVSS3: 8.7
1%
Низкий
2 месяца назад
rocky логотип
RLSA-2026:37410

Important: buildah security update

2 месяца назад
oracle-oval логотип
ELSA-2026-37410

ELSA-2026-37410: buildah security update (IMPORTANT)

2 месяца назад
rocky логотип
RLSA-2026:36199

Important: buildah security update

2 месяца назад
oracle-oval логотип
ELSA-2026-36199

ELSA-2026-36199: buildah security update (IMPORTANT)

около 2 месяцев назад
rocky логотип
RLSA-2026:35833

Important: container-tools:rhel8 security update

2 месяца назад
oracle-oval логотип
ELSA-2026-35833

ELSA-2026-35833: container-tools:ol8 security update (IMPORTANT)

2 месяца назад
rocky логотип
RLSA-2026:37123

Important: podman security, bug fix, and enhancement update

2 месяца назад
oracle-oval логотип
ELSA-2026-37123

ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)

2 месяца назад
rocky логотип
RLSA-2026:37072

Important: podman security, bug fix, and enhancement update

2 месяца назад
oracle-oval логотип
ELSA-2026-37072

ELSA-2026-37072: podman security, bug fix, and enhancement update (IMPORTANT)

около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20838-1

Security update for hauler

4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20833-1

Security update for trivy

4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21069-1

Security update for google-guest-agent

3 месяца назад

Уязвимостей на страницу