Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 71

Количество 71

debian логотип

CVE-2026-39835

2 месяца назад

SSH servers which use CertChecker as a public key callback without set ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий
redhat логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
EPSS: Низкий
nvd логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
EPSS: Низкий
msrc логотип

CVE-2026-39832

2 месяца назад

Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-39832

2 месяца назад

When adding a key to a remote agent constraint extensions such as rest ...

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-78mq-xcr3-xm33

около 1 месяца назад

golang.org/x/crypto is vulnerable to invoking server panic during CheckHostKey/Authenticate flow

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20260709-73-0027

22 дня назад

Уязвимость portainer-ce

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-f5wc-c3c7-36mc

около 1 месяца назад

golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys

CVSS3: 9.1
EPSS: Низкий
rocky логотип

RLSA-2026:38504

18 дней назад

Important: container-tools:rhel8 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-38504

16 дней назад

ELSA-2026-38504: container-tools:ol8 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without set ...

CVSS3: 5.3
1%
Низкий
2 месяца назад
ubuntu логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
2 месяца назад
redhat логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 8.7
1%
Низкий
2 месяца назад
nvd логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.

CVSS3: 9.1
1%
Низкий
2 месяца назад
msrc логотип
CVE-2026-39832

Invoking agent constraints dropped when forwarding keys in golang.org/x/crypto/ssh/agent

CVSS3: 9.1
1%
Низкий
2 месяца назад
debian логотип
CVE-2026-39832

When adding a key to a remote agent constraint extensions such as rest ...

CVSS3: 9.1
1%
Низкий
2 месяца назад
github логотип
GHSA-78mq-xcr3-xm33

golang.org/x/crypto is vulnerable to invoking server panic during CheckHostKey/Authenticate flow

CVSS3: 5.3
1%
Низкий
около 1 месяца назад
redos логотип
ROS-20260709-73-0027

Уязвимость portainer-ce

CVSS3: 8.7
1%
Низкий
22 дня назад
github логотип
GHSA-f5wc-c3c7-36mc

golang.org/x/crypto doesn't drop invoking agent constraints when forwarding keys

CVSS3: 9.1
1%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:38504

Important: container-tools:rhel8 security update

18 дней назад
oracle-oval логотип
ELSA-2026-38504

ELSA-2026-38504: container-tools:ol8 security update (IMPORTANT)

16 дней назад

Уязвимостей на страницу