
The OpenSSH client and server are vulnerable to a pre-authentication DoS attack between versions 9.5p1 to 9.9p1 (inclusive) that causes memory and CPU consumption
This template matches on the following vulnerable versions:
- "SSH-2.0-OpenSSH_9.5p1"
- "SSH-2.0-OpenSSH_9.6p1"
- "SSH-2.0-OpenSSH_9.7p1"
- "SSH-2.0-OpenSSH_9.8p1"
- "SSH-2.0-OpenSSH_9.9p1"
If there is a match, the host is considered to be vulnerable to CVE-2025-26466.
nuclei -u https://yourHost.com -t template.yamlUse at your own risk, I will not be responsible for illegal activities you conduct on infrastructure you do not own or have permission to scan.
Feel free to reach out to me on Signal.