LIVE · cybersecurity feed
Live wire
vendor

Libssh2

6 CVEs published in the last four months. Exploited flaws first.

Critical0
High6
Medium0
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-660328.8highlibssh2libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function 43d ago
CVE-2026-552008.1highlibssh2libssh2 through 1.11.1, fixed in commit 7acf3df contains an out-of-bounds write vulnerability in ssh2_transport_re80d ago
CVE-2026-660337.5highlibssh2libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in 43d ago
CVE-2026-660347.5highlibssh2libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability that allows a malic43d ago
CVE-2026-660357.5highlibssh2libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability 43d ago
CVE-2026-580507highlibssh2libssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a publickey-subsystem response and70d ago

Filter the full tracker by Libssh2