wolfSSL security advisory (AV26-1016)
Canada's Cyber Centre warned that wolfSSH before 1.6.0 is vulnerable and urged administrators to update.
The Canadian Centre for Cyber Security issued advisory AV26-1016 on October 7, 2026, stating that wolfSSH versions before 1.6.0 are affected by vulnerabilities. It directs administrators to the wolfSSH 1.6.0 release from October 6, 2026, and recommends applying available updates. The bulletin does not list CVE identifiers, describe the flaws, or report active exploitation.
- Advisory AV26-1016 covers wolfSSH versions before 1.6.0.
- wolfSSH 1.6.0 was released on October 6, 2026.
- The notice names no CVEs and reports no exploitation.
Full article56 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-1016
Date: October 7, 2026
As of October 7, 2026, wolfSSL is affected by vulnerabilities in the following product:
- wolfSSH
- Prior to 1.6.0
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/wolfssl-security-advisory-av26-1016