Skip to main content

CVE-2025-61985

CVE Details

Visit the official vulnerability details page for CVE-2025-61985 to learn more.

Initial Publication

10/06/2025

Last Update

10/08/2025

Third Party Dependency

openssh-client-common

NIST CVE Summary

ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potentially leading to code execution when a ProxyCommand is used.

CVE Severity

3.6

Our Official Summary

Investigation is ongoing to determine how this vulnerability affects our products.

Status

Awaiting Analysis

Affected Products & Versions

VersionPaletteAIPaletteAI VerteX
0.7.1⚠️ Impacted⚠️ Impacted
0.6.6⚠️ Impacted⚠️ Impacted
0.5.11⚠️ Impacted⚠️ Impacted

Revision History

No revisions available.