Drooid Logo
Back to today’s briefing

Story perspectives

Critical OpenSSH Vulnerabilities Prompt Urgent User Upgrades

2/18/2025

50 12

1 of 1

Story summary
  • Qualys has uncovered two critical vulnerabilities in OpenSSH: CVE-2025-26465, which opens the door to machine-in-the-middle attacks, and CVE-2025-26466, which can trigger pre-authentication denial-of-service attacks. Affecting versions 6.8p1 to 9.9p1, OpenSSH has swiftly released version 9.9p2, urging users to upgrade immediately to safeguard their systems.