CVE-2026-90623 | andreashappe cochise up to 0.4.1 SSH Host Key ssh_connection.py asyncssh.connect certificate validation (Issue 13)
A vulnerability was found in andreashappe cochise up to 0.4.1 and classified as problematic. Affected is the function asyncssh.connect of the file src/cochise/ssh_connection.py of the component SSH Host Key Handler. Executing a manipulation can lead to improper certificate validation.
The identification of this vulnerability is CVE-2026-90623. The attack may be launched remotely. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More