Vulnerability GHSA-86w9-cpqp-85rv
High Risk
HIGH RISK
CVSS Score: 7.5
Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
28 days ago
September 03, 2026 at 09:31 PM UTC
node-forge RSA PKCS#1 v1.5 signature verification accepts extra nested DigestAlgorithm elements
0.1.2 - 1.4.0
0.1.2 - 1.4.0
Summary
node-forge RSA PKCS#1 v1.5 signature verification accepts extra nested DigestAlgorithm elements
Details
node-forge through 1.4.0 fails to validate element count in nested DigestAlgorithm sequences during RSA PKCS#1 v1.5 signature verification. Attackers can embed garbage bytes inside the DigestAlgorithm sequence to forge valid signatures for arbitrary messages using low-exponent RSA keys. This is an incomplete fix for CVE-2026-33894.
Related Vulnerabilities
Other vulnerabilities affecting the same packages
High Risk
6 months ago
Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation)
0.1.2 - 1.3.3 GHSA-2328-f5f3-gj25
0.1.2 - 1.3.3 GHSA-2328-f5f3-gj25
High Risk
6 months ago
Forge has signature forgery in Ed25519 due to missing S > L check
0.1.2 - 1.3.3 GHSA-q67f-28xg-22rw
0.1.2 - 1.3.3 GHSA-q67f-28xg-22rw
High Risk
6 months ago
Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
0.1.2 - 1.3.3 GHSA-ppp5-5v6c-4jwp
0.1.2 - 1.3.3 GHSA-ppp5-5v6c-4jwp
High Risk
6 months ago
Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input
0.1.2 - 1.3.3 GHSA-5m6q-g25r-mvwx
0.1.2 - 1.3.3 GHSA-5m6q-g25r-mvwx
High Risk
10 months ago
node-forge has ASN.1 Unbounded Recursion
0.1.2 - 1.3.1 GHSA-554w-wpv2-vw27
0.1.2 - 1.3.1 GHSA-554w-wpv2-vw27
Impacted packages
Timeline
Published
28 days ago
September 03, 2026 at 09:31 PM UTC
Last Modified
5 hours ago
October 01, 2026 at 09:40 PM UTC