[Medium] CVE-2026-48859 – Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_opt...
Medium CVE-2026-48859 Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_options modules) allows unauthenticated remote username enumeration via timing side-channel in password authentication. When the SSH daemon is configured with the user_passwords or password option,...