Total vulnerabilities in the database
Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to forge signed messages by replacing its signatures with a "standalone" or "timestamp" signature.
Software | From | Fixed in |
---|---|---|
openpgpjs / openpgpjs | - | 4.1.2.x |
![]() |
- | 4.2.0 |