CVE-2026-60002 ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outcome occurs only on the client side.)
Information published.
EPSS 0.00 CVE-2026-60002 OpenSSH US
Information published.
EPSS 0.00 CVE-2026-60002 OpenSSH US