PT-2025-42886 · Wolfssh · Wolfssh

Published

2025-10-21

·

Updated

2025-10-24

·

CVE-2025-11625

CVSS v2.0

10

Critical

AV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions wolfSSH versions prior to 1.4.20
Description An improper host authentication issue exists in wolfSSH clients. This allows bypassing host authentication and potentially leaking client credentials.
Recommendations Update wolfSSH to version 1.4.20 or later.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2026-02585
CVE-2025-11625

Affected Products

Wolfssh