VDB
EN

package

PyPI / asyncssh

pkg:pypi/asyncssh

MEDIUM PyPI
GHSA-g794-3fmp-753h · CVE-2026-45309

AsyncSSH `AuthorizedKeysFile %u` path traversal allows attacker-selected authorized keys to authenticate a traversal username

수정: 2026. 5. 27.

MEDIUM 5.9 PyPI
GHSA-hfmc-7525-mj55

AsyncSSH vulnerable to Prefix Truncation Attack (a.k.a. Terrapin Attack) against ChaCha20-Poly1305 and Encrypt-then-MAC

수정: 2024. 12. 7.