CVE-2026-73281Disclosure(openbsd / openssh)

LOWCVSS 3.5 · LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch openbsd openssh systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including operations that add tokens or use keys. This is caused by misinteraction between agent locking and the [email protected] extension.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-669

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openssh

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Disclosure: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
openssh

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-08-12: 2Patch / Workaround · 2026-08-12: 208-12
Signal classification2 categories
Disclosure
150.0%
Patch
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • Kazuki Omo@omokazuki
    Disclosure

    OpenSSHの脆弱性(Medium: CVE-2026-73282, Low: CVE-2026-73281, CVE-2026-73283)とOpenSSH 10.5リリース #sios_tech #security #vulnerability #セキュリティ #脆弱性 #ssh #openssh https://security.sios.jp/vulnerability/openssh-security-vulnerability-20260812/

    Post summary

    The tweet announces OpenSSH vulnerabilities (CVE‑2026‑73281, ‑73282, ‑73283) and the release of OpenSSH 10.5, but does not provide technical details, PoC, exploit code, or active exploitation claims.

    00010120
    372 followersView on X
  • WAKABAYASHI,Tomonori@wakababest
    Patch

    状況調べますか… OpenSSHの脆弱性(Medium: CVE-2026-73282, Low: CVE-2026-73281, CVE-2026-73283)とOpenSSH 10.5リリース https://security.sios.jp/vulnerability/openssh-security-vulnerability-20260812/

    Post summary

    The post lists three OpenSSH CVEs with severity ratings and directs readers to a new OpenSSH 10.5 release that presumably addresses them.

    00000103
    118 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenbsdopenssh---

Explore more