dcit records
2 published records for vendor dcit.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-335 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG)1
- CWE-347 Improper Verification of Cryptographic Signature1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2018-25099No exploit | In the CryptX module before 0.062 for Perl, gcm_decrypt_verify() and chacha20poly1305_decrypt_verify() do not verify the tag.CWE-347 | Critical9.8 | — | 0.5% | Mar 18, 2024 |
30Monitor | CVE-2026-41564No exploit | CryptX versions before 0.088 for Perl do not reseed the Crypt::PK PRNG state after forkingdcit · cryptx · CWE-335 | High7.5 | — | 0.5% | Apr 23, 2026 |
- CVE-2018-2509939Monitor
In the CryptX module before 0.062 for Perl, gcm_decrypt_verify() and chacha20poly1305_decrypt_verify() do not verify the tag.
CriticalCVSS 9.8No exploitEPSS 0%Mar 18, 2024
- CVE-2026-4156430Monitor
CryptX versions before 0.088 for Perl do not reseed the Crypt::PK PRNG state after forking
HighCVSS 7.5No exploitEPSS 1%dcit · cryptxApr 23, 2026