Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Simon Tatham

#14249of 53,632
18.8Total CVSS
Vulnerabilities · 3
Low
1
Medium
1
Critical
1
PT-2026-43122
5.9
2026-05-22
Putty · Putty · CVE-2026-48850
**Name of the Vulnerable Software and Affected Versions** PuTTY versions 0.72 through 0.83 **Description** A double free issue exists in the RSA KEX (Key Exchange), which is the process used by two parties to establish a shared secret key over an insecure channel. **Recommendations** Update to version 0.84.
PT-2026-43123
3.1
2026-05-22
Putty · Putty · CVE-2026-48851
**Name of the Vulnerable Software and Affected Versions** PuTTY versions 0.77 through 0.83 **Description** The software uses a copy of the PuTTY icon to indicate trust for TELNET data. However, the trust status is not cleared between the proxy authentication phase and the main session, which may lead to incorrect trust indications. **Recommendations** Update to version 0.84.
PT-2019-14934
9.8
2019-10-01
Simon Tatham · Putty · CVE-2019-17067
**Name of the Vulnerable Software and Affected Versions** PuTTY versions prior to 0.73 **Description** The issue allows attackers to listen on the same port to steal an incoming connection due to improperly opened port-forwarding listening sockets. **Recommendations** For versions prior to 0.73, update to version 0.73 or later to resolve the issue.