Количество 10
Количество 10
BDU:2025-15402
Уязвимость функции asn1.validate() сценария forge/lib/asn1.js набора криптографических утилит и инструментов для разработки веб-приложений Forge, позволяющая нарушителю обойти ограничения безопасности
CVE-2025-12816
An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions.
CVE-2025-12816
An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions.
CVE-2025-12816
An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions.
CVE-2025-12816
CVE-2025-12816
CVE-2025-12816
An interpretation-conflict (CWE-436) vulnerability in node-forge versi ...
GHSA-5gfm-wpxj-wjgq
node-forge has an Interpretation Conflict vulnerability via its ASN.1 Validator Desynchronization
openSUSE-SU-2026:20177-1
Security update for golang-github-prometheus-prometheus
SUSE-SU-2026:1008-1
Security update for Prometheus
SUSE-SU-2026:1013-1
Security update 5.0.7 for Multi-Linux Manager Client Tools
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-15402 Уязвимость функции asn1.validate() сценария forge/lib/asn1.js набора криптографических утилит и инструментов для разработки веб-приложений Forge, позволяющая нарушителю обойти ограничения безопасности | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
CVE-2025-12816 An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions. | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
CVE-2025-12816 An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions. | CVSS3: 8.7 | 1% Низкий | 9 месяцев назад | |
CVE-2025-12816 An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions. | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
CVE-2025-12816 CVE-2025-12816 | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
CVE-2025-12816 An interpretation-conflict (CWE-436) vulnerability in node-forge versi ... | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
GHSA-5gfm-wpxj-wjgq node-forge has an Interpretation Conflict vulnerability via its ASN.1 Validator Desynchronization | CVSS3: 8.6 | 1% Низкий | 9 месяцев назад | |
openSUSE-SU-2026:20177-1 Security update for golang-github-prometheus-prometheus | 7 месяцев назад | |||
SUSE-SU-2026:1008-1 Security update for Prometheus | 5 месяцев назад | |||
SUSE-SU-2026:1013-1 Security update 5.0.7 for Multi-Linux Manager Client Tools | 5 месяцев назад |
Уязвимостей на страницу