MEDIUMVulnerability
CVE-2026-59848
A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing unbounded memory growth and client-side denial of service.
Properties
- severity
- MEDIUM
- score
- 5.3
- cve_id
- CVE-2026-59848
- vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
- published_at
- 2026-07-21T14:16:34.790
- last_modified
- 2026-08-12T20:17:46.260
Related Entities (7)
DESCRIBED_BY (1)
→[Source]NVD
AFFECTS_PRODUCT (5)
→[Product]
→[Product]
→[Product]
→[Product]
→[Product]
HAS_WEAKNESS (1)
→[Weakness]Allocation of Resources Without Limits or Throttling
Explore deeper with Ninja Signal's threat intelligence graph