yousukezan[verified]@yousukezanDisclosure
The post announces a set of moderate severity OpenSSH CVEs and the release of version 10.4/10.4p1, indicating a patch, but provides no further technical or exploit details.
Mohi[verified]@disismohiDisclosure
The post details a configuration flaw in OpenSSH ≤10.4 where DisableForwarding=yes is ignored if PermitTunnel=yes, representing a disclosure of a new vulnerability.
Kazuki Omo@omokazukiPatch
The post announces the release of OpenSSH 10.4/10.4p1, which includes patches for five moderate‐severity CVEs (CVE‑2026‑59995 through CVE‑2026‑59999).
CVE@CVEnewGeneral
The CVE details a configuration precedence issue in OpenSSH that allows tunnels when forwarding is disabled; no exploitation or patches are referenced.
Infoflowcloud@infoflowcloudDisclosure
CVE-2026-59999 highlights a precedence issue in OpenSSH sshd pre‑10.4 where DisableForwarding=yes fails to override PermitTunnel=yes, potentially allowing unintended tunneling.