Skip to main content

CVE-2025-61985

CVE Details​

Visit the official vulnerability details page for CVE-2025-61985 to learn more.

Initial Publication​

10/06/2025

Last Update​

07/14/2026

Third Party Dependency​

openssh-client-common

NIST CVE Summary​

ssh in OpenSSH before 10.1 allows the '\0' character in an ssh:// URI, potentially leading to code execution when a ProxyCommand is used.

CVE Severity​

3.6

Our Official Summary​

Investigation is ongoing to determine how this vulnerability affects our products.

Status​

Deferred

Affected Products & Versions​

VersionPaletteAIPaletteAI VerteX
1.4.0⚠️ Impacted⚠️ Impacted
1.3.2⚠️ Impacted⚠️ Impacted
1.2.2⚠️ Impacted⚠️ Impacted

Revision History​

No revisions available.