Known Vulnerabilities for products from Openpgpjs
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Openpgpjs".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-41037 json | OpenPGP.js is a JavaScript implementation of the OpenPGP protocol. In affected versions OpenPGP Cleartext Signed Messages are... | 4.3 - MEDIUM | 2023-08-29 | 2023-09-08 |
| CVE-2019-9155 json | A cryptographic issue in OpenPGP.js <=4.2.0 allows an attacker who is able provide forged messages and gain feedback about wh... | 5.9 - MEDIUM | 2019-08-22 | 2021-07-21 |
| CVE-2019-9154 json | Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to pass off unsigned data as sign... | 7.5 - HIGH | 2019-08-22 | 2019-08-30 |
| CVE-2019-9153 json | Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to forge signed messages by repla... | 7.5 - HIGH | 2019-08-22 | 2019-08-30 |
| CVE-2015-8013 json | s2k.js in OpenPGP.js will decrypt arbitrary messages regardless of passphrase for crafted PGP keys which allows remote attack... | Not Provided | 2017-07-25 | 2025-04-20 |
Known software with vulnerabilities from Openpgpjs
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Openpgpjs | Openpgpjs | 0.1.0 |