Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
717424
AlmaLinux
5103
Alpaquita
10949
Alpine
4284
Android
3402
Azure Linux
12016
BellSoft Hardened Containers
521
Bitnami
8145
Chainguard
7205
CleanStart
1506
CRAN
14
crates.io
2489
Debian
58700
Echo
5685
GHC
3
GIT
81700
GitHub Actions
54
Go
7523
Hackage
32
Hex
142
Julia
958
Linux
15361
Mageia
6002
Maven
6603
MinimOS
75359
npm
220921
NuGet
1750
opam
18
openEuler
7054
openSUSE
13132
OSS-Fuzz
3937
Packagist
6554
Pub
11
PyPI
20285
Red Hat
20783
Rocky Linux
3496
Root
16032
RubyGems
2000
SUSE
20931
SwiftURL
58
TuxCare
5651
Ubuntu
56306
VSCode
20
Wolfi
4729
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-g794-3fmp-753h
PyPI/asyncssh
AsyncSSH
`
AuthorizedKeysFile %u
`
path traversal allows attacker-selected authorized keys to authenticate a traversal username
27 May
Fix available
Severity - 6.9 (Medium)
GHSA-hfmc-7525-mj55
PyPI/asyncssh
AsyncSSH vulnerable to Prefix Truncation Attack (a.k.a. Terrapin Attack) against ChaCha20-Poly1305 and Encrypt-then-MAC
18 Dec 2023
Fix available
Severity - 5.9 (Medium)
PYSEC-2023-237
PyPI/asyncssh
See record for full details
14 Nov 2023
Fix available
Severity - 5.9 (Medium)
PYSEC-2023-239
PyPI/asyncssh
See record for full details
14 Nov 2023
Fix available
Severity - 6.8 (Medium)
GHSA-c35q-ffpf-5qpm
PyPI/asyncssh
AsyncSSH Rogue Session Attack
09 Nov 2023
Fix available
Severity - 8.1 (High)
GHSA-cfc2-wr2v-gxm5
PyPI/asyncssh
AsyncSSH Rogue Extension Negotiation
09 Nov 2023
Fix available
Severity - 5.3 (Medium)
GHSA-97cv-6pjf-5f9q
PyPI/asyncssh
AsyncSSH SSH Server Authentication Bypass
14 May 2022
Fix available
Severity - 9.3 (Critical)
PYSEC-2018-108
PyPI/asyncssh
github.com/ronf/asyncssh
See record for full details
12 Mar 2018
Fix available
PyPI - OSV