📦 Jsrsasign

by Jsrsasign Project

🔍 What is Jsrsasign?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-30246

CRITICAL CVSS 9.1 Apr 7, 2021

The jsrsasign package for Node.js incorrectly validates some invalid RSA PKCS#1 v1.5 signatures as valid, potentially allowing attackers to bypass signature verification. This affects all applications...

CVE-2024-21484

HIGH CVSS 7.5 Jan 22, 2024

This vulnerability allows attackers to decrypt RSA-encrypted data by exploiting timing discrepancies in the jsrsasign library's PKCS1.5 and RSAOAEP decryption implementations. Systems using jsrsasign ...