Libssh2
28 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Libssh2, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Libssh2 CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 4 |
| 2026-06 | 5 |
| 2026-07 | 4 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 28 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High15
- Medium11
- Low1
Latest CVEs
The 15 most recently published vulnerabilities affecting Libssh2.
- CVE-2026-66035libssh2 Heap Buffer Overflow via ETM Cipher Negotiation7.5
- CVE-2026-66034libssh2 Heap Out-of-Bounds Read via publickey subsystem7.5
- CVE-2026-66033libssh2 Integer Underflow DoS via AES-GCM Cipher Negotiation7.5
- CVE-2026-66032libssh2 Double-Free Heap Corruption via sftp_open()8.8
- CVE-2026-58051libssh2 - Free of Uninitialized Pointer in publickey List Cleanup6.5
- CVE-2026-58050libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation7.0
- CVE-2025-15661libssh2 - Heap Buffer Over-read via sftp_symlink() in sftp.c6.5
- CVE-2026-55200libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c8.1
- CVE-2026-55199libssh2 - Pre-Authentication DoS via SSH_MSG_EXT_INFO Handler5.9
- BDU:2026-06210Уязвимость функции _libssh2_ntohu32() библиотеки реализации протокола SSH2 Libssh2, позволяющая нарушителю вызвать отказ в обслуживании4.8
- BDU:2026-06225Уязвимость функции _libssh2_packet_add() компонента packet.c библиотеки реализации протокола SSH2 Libssh2, позволяющая нарушителю вызвать отказ в обслуживании5.9
- BDU:2026-06217Уязвимость компонента src/kex.c библиотеки реализации протокола SSH2 Libssh2, позволяющая нарушителю получить доступ к конфиденциальным данным3.7
- CVE-2026-7598libssh2 userauth.c userauth_password integer overflow7.3
- CVE-2023-48795The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (fr...5.9
- CVE-2020-22218An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory.7.5
Product grouping is registry-driven, with AI assist and human review. How it works