Loading HuntDB...

GHSA-f35j-mfvw-p857

GitHub Security Advisory

⚠ Unreviewed LOW Has CVE

Advisory Details

A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

Related CVEs

Key Information

GHSA ID
GHSA-f35j-mfvw-p857
Published
January 3, 2024 6:30 PM
Last Modified
May 22, 2024 6:30 PM
CVSS Score
2.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 9, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.