Vulnerabilities

Last updated 1 hour ago
Filters
Severity
Critical Severity
CVSS Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
High Severity
CVSS Score Range: 7.0–8.9
High severity vulnerabilities (CVSS 7.0–8.9). Serious vulnerabilities that should be prioritized soon after critical fixes.
Medium Severity
CVSS Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
Low Severity
CVSS Score Range: < 4.0
Low severity vulnerabilities (CVSS < 4.0). Hygiene issues that can accumulate but pose lower immediate risk.
Unknown Severity
CVSS Score Range: No score
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
Package Summary Severity Published Modified
cryptography python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees Medium Risk 6.0 1 month ago 3 days ago
cryptography python-cryptography: Duplicate self-signed intermediates can cause exponential path-building High Risk 8.0 1 month ago 3 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-47302 – .NET Denial of Service Vulnerability High Risk 7.5 2 months ago 18 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-50525 – .NET Denial of Service Vulnerability High Risk 7.5 2 months ago 18 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-50648 – .NET Denial of Service Vulnerability High Risk 7.5 2 months ago 18 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-26171 – .NET Denial of Service Vulnerability High Risk 7.5 5 months ago 18 days ago
cryptography cryptography has incomplete DNS name constraint enforcement on peer names Medium Risk 5.3 6 months ago 18 days ago
system.security.cryptography.cose Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability High Risk 8.0 7 months ago 18 days ago
cryptography cryptography Vulnerable to a Subgroup Attack Due to Missing Subgroup Validation for SECT Curves High Risk 8.0 7 months ago 18 days ago
cryptography cryptography: PKCS#7 EnvelopedData decryption exposes a Bleichenbacher oracle through distinguishable errors and timing High Risk 8.0 1 month ago 18 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-47304 – .NET Security Feature Bypass Vulnerability High Risk 8.1 2 months ago 18 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-50527 – .NET Denial of Service Vulnerability High Risk 7.5 2 months ago 18 days ago
cryptography Vulnerable OpenSSL included in cryptography wheels High Risk 7.5 3 months ago 18 days ago
cryptography Cryptography vulnerable to buffer overflow if non-contiguous buffers were passed to APIs Medium Risk 6.0 5 months ago 18 days ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-33116 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability High Risk 7.5 5 months ago 18 days ago
aws-sdk-paymentcryptography AWS SDK for Rust v1 adopted defense in depth enhancement for region parameter value Low Risk 3.7 8 months ago 18 days ago
aws-sdk-paymentcryptographydata AWS SDK for Rust v1 adopted defense in depth enhancement for region parameter value Low Risk 3.7 8 months ago 18 days ago
cryptography Vulnerable OpenSSL included in cryptography wheels Low Risk 3.0 1 year ago 18 days ago
cryptography pyca/cryptography has a vulnerable OpenSSL included in cryptography wheels Medium Risk 6.0 2 years ago 18 days ago
bouncycastle.cryptography Bouncy Castle crafted signature and public key can be used to trigger an infinite loop Medium Risk 5.3 2 years ago 18 days ago
bouncycastle.cryptography Bouncy Castle affected by timing side-channel for RSA key exchange ("The Marvin Attack") Medium Risk 5.9 2 years ago 18 days ago
cryptography cryptography NULL pointer dereference with pkcs12.serialize_key_and_certificates when called with a non-matching certificate and private key and an hmac_hash override High Risk 7.5 2 years ago 18 days ago
cryptography Null pointer dereference in PKCS12 parsing Medium Risk 5.5 2 years ago 18 days ago
cryptography Python Cryptography package vulnerable to Bleichenbacher timing oracle attack High Risk 7.5 2 years ago 18 days ago
cryptography Vulnerable OpenSSL included in cryptography wheels Low Risk 3.0 3 years ago 18 days ago
cryptography Vulnerable OpenSSL included in cryptography wheels Low Risk 3.0 3 years ago 18 days ago
cryptography pyca/cryptography's wheels include vulnerable OpenSSL Low Risk 3.0 3 years ago 18 days ago
cryptography cryptography vulnerable to NULL-dereference when loading PKCS7 certificates Medium Risk 5.9 2 years ago 18 days ago
cryptography cryptography mishandles SSH certificates High Risk 7.5 3 years ago 18 days ago
cryptography Cipher.update_into can corrupt memory if passed an immutable python object as the outbuf Medium Risk 6.5 3 years ago 18 days ago
cryptography Vulnerable OpenSSL included in cryptography wheels High Risk 7.4 3 years ago 18 days ago
bouncycastle.cryptography Bouncy Castle certificate parsing issues cause high CPU usage during parameter evaluation. Medium Risk 5.3 2 years ago 18 days ago
node_cryptography Malicious code in node_cryptography (npm) Unknown 1 month ago 1 month ago
system.security.cryptography.xml Microsoft Security Advisory CVE-2026-32203 – .NET and Visual Studio Denial of Service Vulnerability High Risk 7.5 2 months ago 1 month ago
cryptography python-cryptography: Duplicate self-signed intermediates can cause exponential path-building Unknown 1 month ago 1 month ago
cryptography python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees Unknown 1 month ago 1 month ago
cryptography cryptography: PKCS#7 EnvelopedData decryption exposes a Bleichenbacher oracle through distinguishable errors and timing Unknown 1 month ago 1 month ago
cryptography No summary available Medium Risk 6.5 7 months ago 2 months ago
cryptography Python Cryptography package vulnerable to Bleichenbacher timing oracle attack High Risk 7.5 2 months ago 2 months ago
cryptography Vulnerable OpenSSL included in cryptography wheels Unknown 2 months ago 2 months ago
cryptography Null pointer dereference in PKCS12 parsing Medium Risk 5.5 2 months ago 2 months ago
cryptography Vulnerable OpenSSL included in cryptography wheels High Risk 7.4 2 months ago 2 months ago
cryptography No summary available High Risk 7.5 2 years ago 3 months ago
cryptography No summary available Unknown 3 years ago 3 months ago
cryptography No summary available Medium Risk 5.3 6 months ago 4 months ago
cryptography No summary available Critical 9.8 5 months ago 4 months ago
cryptography No summary available Unknown 3 years ago 7 months ago
pycryptographylibv3 Malicious code in pycryptographylibv3 (PyPI) Unknown 1 year ago 9 months ago
antimatter-celeste-meissa-cryptography Malicious code in antimatter-celeste-meissa-cryptography (npm) Unknown 10 months ago 10 months ago
cryptography-biohacking-xml-graphql Malicious code in cryptography-biohacking-xml-graphql (npm) Unknown 10 months ago 10 months ago