Every CVE whose affected-product data names Apache Mina Sshd, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (7)
CVE-2026-56452 — CVSS 7.5 (high): Path traversal in the sshd-scp component of Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server-side SSH. The…
CVE-2026-56624 — CVSS 7.3 (high): Improper certificate validation in Apache MINA SSHD (server-side). Apache MINA SSHD is a Java library for client-side and server-side SSH…
CVE-2026-48827 — CVSS 7.1 (high): Path traversal vulnerability in Apache MINA SSHD bundle sshd-git. Lack of path validation in git-upload-pack, git-receive-pack, and other…
CVE-2026-56623 — CVSS 7.1 (high): Path traversal on Windows in Apache MINA SSHD component sshd-git. Apache MINA SSHD is a Java library for client-side and server-side SSH. A…
CVE-2024-41909 — CVSS 5.9 (medium): Like many other SSH implementations, Apache MINA SSHD suffered from the issue that is more widely known as CVE-2023-48795. An attacker that…
CVE-2019-6111 — CVSS 5.9 (medium): An issue was discovered in OpenSSH 7.9. Due to the scp implementation being derived from 1983 rcp, the server chooses which…
CVE-2026-58624 — CVSS 5.4 (medium): Improper input validation in sshd-git in Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server-side SSH…