asyncssh
Security Risk Profile
35
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 3 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 19, 2023 to present
3
Total CVEs
0
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
5.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
35/100
low
Severity Distribution
Critical
0High
0Medium
1Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
1
Most Affected Products
1. AsyncSSH AsyncSSH3
2. Dropbear Dropbear2
3. Erlang Erlang ssh2
4. go golang.org/x/crypto1
5. Golang golang.org/x/crypto1
Recent Vulnerabilities
See more →CVE-2026-54590
CVSS 5.9medium
AsyncSSH AuthorizedKeysFile username substitution bypass through ~ and environment expansion
7/8/2026🔧 No Patch
https://seclists.org/oss-sec/2023/q4/300
unknown
CVE-2023-48795: Prefix Truncation Attacks in SSH Specification (Terrapin Attack)
12/20/2023🔧 No Patch
https://seclists.org/oss-sec/2023/q4/297
unknown
CVE-2023-48795: Prefix Truncation Attacks in SSH Specification (Terrapin Attack)
12/19/2023🔧 No Patch
Monitor asyncssh in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.