CVE-2026-59995Disclosure(openbsd / openssh)

LOWCVSS 5.4 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openbsd openssh systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-23

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openssh

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 4 mentions (2026-07-08); latest day: 1
  • 6 total mentions across 3 days

Affected systems

Vendors
Products
openssh

Deep dive

Activity timeline6 mentions / 3d
01234Mentions · 2026-07-08: 4Mentions · 2026-07-10: 1Mentions · 2026-07-17: 1Patch / Workaround · 2026-07-08: 2Patch / Workaround · 2026-07-17: 1Technical Details · 2026-07-08: 2Technical Details · 2026-07-10: 1Technical Details · 2026-07-17: 107-0807-1007-17
Signal classification2 categories
Disclosure
350.0%
Patch
350.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-07-084
Disclosure2Patch2
2026-07-101
Disclosure1
2026-07-171
Patch1
Full discourse6 posts
  • yousukezan@yousukezan
    Patch

    OpenSSHの脆弱性(Moderate: CVE-2026-59995, CVE-2026-59996, CVE-2026-59997, CVE-2026-59998, CVE-2026-59999)とOpenSSH 10.4/10.4p1リリース https://security.sios.jp/vulnerability/openssh-security-vulnerability-20260709/

    Post summary

    The text announces OpenSSH’s moderate‑severity CVEs and a new 10.4/10.4p1 release that presumably addresses them.

    0301341.8K
    14.9K followersView on X
  • connect24h@connect24h
    Disclosure

    いや~んな奴。OpenSSH 10.4未満は、SSH基盤の棚卸し対象として今日見るべきだ。CVE-2026-59995/59996/59997/59999/60000/60001/60002の7件で、sshdだけでなくsftp/scp/ssh client側まで刺さる。 現場で嫌なのは、RCE一本釣りではなく運用の隙に入り込む類が混じることだと思う。sftpの保存先制約、scpの親ディレクトリ配置、DisableForwardingとPermitTunnelの優先順位、MaxAuthTries/GSSAPI周り、host key再交換時のclient UAF。まずssh -Vで10.4未満を洗い、sftp/scpを自動処理に使う踏み台・CI・運用端末から潰してほしい。SSHは地味だが、ここを甘く見ると後で調査がつらい。 #セキュリティ

    Post summary

    The author alerts that seven CVEs impact OpenSSH versions below 10.4, affecting various components, and urges organizations to identify and patch those systems.

    10010377
    4.4K followersView on X
  • Kazuki Omo@omokazuki
    Patch

    OpenSSHの脆弱性(Moderate: CVE-2026-59995, CVE-2026-59996, CVE-2026-59997, CVE-2026-59998, CVE-2026-59999)とOpenSSH 10.4/10.4p1リリース #sios_tech #security #vulnerability #セキュリティ #脆弱性 #linux #openssh #ssh https://security.sios.jp/vulnerability/openssh-security-vulnerability-20260709/

    Post summary

    The text announces moderate CVE-2026-59995 to 59999 in OpenSSH and highlights the release of version 10.4/10.4p1 which presumably includes fixes for these vulnerabilities.

    00010148
    369 followersView on X
  • VulniPulse@vulnipulse
    Patch

    ⚠️ NetApp E-Series SANtricity OS Controller alert: CVE-2026-59995 (CVSS 7.7) Attackers could disrupt service or cause a denial of service. Apply the vendor-recommended mitigation. https://vulnipulse.com/advisories/netapp-ntap-20260717-0012 #NetApp #ESeriesSANtricityOSController #CyberSecurity #CVE

    Post summary

    Vendor recommends applying mitigation for NetApp E‑Series SANtricity OS Controller CVE‑2026‑59995 to prevent potential denial‑of‑service attacks.

    0000027
    6 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-59995 sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server. https://www.cve.org/CVERecord?id=CVE-2026-59995 ----- Traducción: CVE-2026-59995 sftp en Open… http://infoflow.cloud`

    Post summary

    The text announces a new CVE affecting OpenSSH sftp by exposing a file location constraint issue, with no PoC, exploit, or patch details provided.

    0000043
    91 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-59995 sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled server. https://www.cve.org/CVERecord?id=CVE-2026-59995

    Post summary

    The text announces that OpenSSH sftp versions before 10.4 are vulnerable because they allow files downloaded from an attacker‑controlled server to be saved to arbitrary locations.

    00000670
    57.8K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenbsdopenssh---

Explore more