pkg:Go/github.com/shellhub-io/shellhub

4 total CVEsMEDIUM4

✅ Check your installed version

All known vulnerabilities

  • MEDIUM6.5CVE-2026-44426ShellHub has cross-tenant IDOR in `GET /api/namespaces/:tenant` via API Key bypasses membership check
    from 0, < 0.24.2
  • MEDIUM6.5CVE-2026-44423ShellHub has cross-tenant IDOR in `GET /api/sessions/:uid` that discloses SSH session data
    from 0, < 0.24.2
  • MEDIUM6.5CVE-2026-44424ShellHub has cross-tenant IDOR in `GET /api/devices/:uid` that discloses device data of any namespace
    from 0, < 0.24.2
  • MEDIUM5.4CVE-2026-44425ShellHub has crash-DoS via field injection in filter and sort-by parameters
    from 0, < 0.24.2