Skip to content
High Severity Vulnerability in OpenSSH

High Severity Vulnerability in OpenSSH

Csa.Sg • April 30, 2026

Open SecureShell (OpenSSH) has released a security update to address a high severity vulnerability in OpenSSH. The vulnerability has a Common Vulnerability Scoring System (CVSS v3.1) score of 8.1 out of 10. Users and administrators of affected products are advised to update to the latest versions immediately.

OpenSSH is an open-source suite of secure networking utilities based on the SSH protocol. OpenSSH has released a security update to address an authorised keys principals mishandling vulnerability (CVE-2026-35414) affecting OpenSSH before version 10.3.

Successful exploitation of this vulnerability could allow an authenticated attacker to bypass access controls and gain unauthorised root access to the affected system.

This vulnerability affects OpenSSH versions prior to 10.3.

Users and administrators of affected products are advised to update to the latest versions immediately.

Extracted Entities