Products: 1
Vulnerabilities: 6
Known Exploited: 0
0
Critical Level Threats
3
High Level Threats
2
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2025-47934
OpenPGP.js's message signature verification can be spoofed
Last Modified: Apr 15, 2026
Published: May 19, 2025
CVE-2023-41037
Cleartext Signed Message Signature Spoofing in openpgpjs
Last Modified: Nov 21, 2024
Published: Aug 29, 2023
CVE-2019-9155
A cryptographic issue in OpenPGP.js <=4.2.0 allows an attacker who is able provide forged messages and gain feedback about whether decryption of these messages succeeded to conduct an invalid curve attack in order to gain the victim's ECDH private key.
Last Modified: Nov 21, 2024
Published: Aug 22, 2019
CVE-2019-9154
Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to pass off unsigned data as signed.
Last Modified: Nov 21, 2024
Published: Aug 22, 2019
CVE-2019-9153
Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to forge signed messages by replacing its signatures with a "standalone" or "timestamp" signature.
Last Modified: Nov 21, 2024
Published: Aug 22, 2019
Items Per Page
