LOWVulnerability

CVE-2026-73281

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the [email protected] extension.

Properties

severity
LOW
score
3.5
cve_id
CVE-2026-73281
vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:N
published_at
2026-08-11T20:18:49.690
last_modified
2026-08-31T19:27:52.023

Related Entities (2)

HAS_WEAKNESS (1)

[Weakness]Incorrect Resource Transfer Between Spheres

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-73281 — Ninja Signal Threat Intelligence | Ninja Signal