← Retour à la recherche de CVE

CVE-2026-31983

SSH keys synchronization endpoint

Description

A Missing Authentication vulnerability was discovered in the SSH keys synchronization endpoint. An unauthenticated attacker can send a request to the SSH keys synchronization endpoint and obtain the list of users that have uploaded their public SSH keys, their groups, and the uploaded public SSH keys.

CVSS 5.3EPSS 0.23500000000000001%Risque 0.54
Voir la source
Publication
2026-07-09 08:16:47
Versions concernées
unknown
Type
Logiciel critique
Dernière modification
2026-08-11 13:18:14
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N