THREAT OPS › Threat News › [NVD] CVE-2026-86231 (LOW 3.7) — A security flaw has been discovered in mwiede jsch up to 2.28.5. Affected is the function getRevokedKeys of the file src/main/java/com/jcraft/jsch/KnownHosts.java. Performing a manipulation of the argument known_hosts results in improper check for certificate revocation. The atta
[NVD] CVE-2026-86231 (LOW 3.7) — A security flaw has been discovered in mwiede jsch up to 2.28.5. Affected is the function getRevokedKeys of the file src/main/java/com/jcraft/jsch/KnownHosts.java. Performing a manipulation of the argument known_hosts results in improper check for certificate revocation. The atta
CVE-2026-86231 CVSS: 3.7 LOW Published: 2026-09-06T23:17:39.157
A security flaw has been discovered in mwiede jsch up to 2.28.5. Affected is the function getRevokedKeys of the file src/main/java/com/jcraft/jsch/KnownHosts.java. Performing a manipulation of the argument known_hosts results in improper check for certificate revocation. The attack is possible to be carried out remotely. The attack i
Indicators of compromise
- 194a2f76a5c0f1c3f778565be3fd66bcafc42d23sha1
- CVE-2026-86231cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-86231