Количество 2
Количество 2
CVE-2021-30246
почти 5 лет назад
In the jsrsasign package through 10.1.13 for Node.js, some invalid RSA PKCS#1 v1.5 signatures are mistakenly recognized to be valid. NOTE: there is no known practical attack.
CVSS3: 9.1
EPSS: Низкий
GHSA-27fj-mc8w-j9wg
почти 5 лет назад
RSA signature validation vulnerability on maleable encoded message in jsrsasign
CVSS3: 9.1
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-30246 In the jsrsasign package through 10.1.13 for Node.js, some invalid RSA PKCS#1 v1.5 signatures are mistakenly recognized to be valid. NOTE: there is no known practical attack. | CVSS3: 9.1 | 0% Низкий | почти 5 лет назад | |
GHSA-27fj-mc8w-j9wg RSA signature validation vulnerability on maleable encoded message in jsrsasign | CVSS3: 9.1 | 0% Низкий | почти 5 лет назад |
Уязвимостей на страницу
20