İçeriğe atla
Noroxi

python-jose project kayıtları

python-jose project üreticisine ait 4 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

4 kayıt
  • CVE-2016-7036
    40Planlayın

    python-jose before 1.3.2 allows attackers to have unspecified impact by leveraging failure to use a constant time comparison for HMAC keys.

    KritikCVSS 9,8İstismar yokEPSS %2

    python-jose project · python-jose23 Oca 2017

  • CVE-2024-33663
    26İzleyin

    python-jose through 3.3.0 has algorithm confusion with OpenSSH ECDSA keys and other key formats.

    OrtaCVSS 6,5İstismar yokEPSS %0

    python-jose project · python-jose25 Nis 2024

  • CVE-2024-33664
    21İzleyin

    python-jose through 3.3.0 allows attackers to cause a denial of service (resource consumption) during a decode via a crafted JSON Web Encryp

    OrtaCVSS 5,3İstismar yokEPSS %1

    python-jose project · python-jose25 Nis 2024

  • CVE-2024-29370
    21İzleyin

    In python-jose 3.3.0 (specifically jwe.decrypt), a vulnerability allows an attacker to cause a Denial-of-Service (DoS) condition by crafting

    OrtaCVSS 5,3İstismar yokEPSS %0

    python-jose project · python-jose17 Ara 2025