28 Total CVEs
28 AI Analyzed
0 CISA KEV
18 Critical

Profile

0% ended up actively exploited 0 of 28 added to CISA KEV
64% rated critical (CVSS 9.0+) 18 critical, 10 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

28 CVEs in the last 12 months

Products

  • openssl_encrypt28

1 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-28 of 28 CVEs
CVE-2026-81707
Analyzed
9.8
jahlives openssl_encrypt

The jahlives openssl_encrypt library fails to sanitize email fields, allowing attackers to inject ANSI escape sequences to forge identity fingerprints...

2026-08-28
CVE-2026-81702
Analyzed
9.8
jahlives openssl_encrypt

The jahlives openssl_encrypt library fails to validate identity fingerprints upon loading, allowing unauthenticated attackers to perform silent public...

2026-08-28
CVE-2026-81701
Analyzed
9.8
jahlives openssl_encrypt

A signature verification bypass in jahlives openssl_encrypt allows unauthenticated attackers to execute arbitrary code by loading malicious plugins.

2026-08-28
CVE-2026-81700
Analyzed
9.8
jahlives openssl_encrypt

The openssl_encrypt library fails to properly validate GPG signatures, allowing revoked or expired keys to be treated as valid, which can lead to the...

2026-08-28
CVE-2026-81683
Analyzed
8.4
jahlives openssl_encrypt

openssl_encrypt (pip package openssl-encrypt) versions 1.4.8 and earlier store an mTLS client private key in cleartext within a world-readable (0644)...

2026-08-28
CVE-2026-74901
Analyzed
9.8
jahlives openssl_encrypt

The openssl_encrypt library contains a cryptographic flaw in pqc.py where decryption failures trigger an insecure fallback to unauthenticated AES-CTR...

2026-08-18
CVE-2026-74900
Analyzed
9.8
jahlives openssl_encrypt

A critical cryptographic flaw exists where KEM decapsulation failures trigger a deterministic simulation mode, allowing attackers to decrypt ciphertex...

2026-08-18
CVE-2026-74899
Analyzed
9.8
jahlives openssl_encrypt

A sandbox escape vulnerability in the IsolatedPluginExecutor allows unauthenticated attackers to access Python type objects, facilitating arbitrary co...

2026-08-18
CVE-2026-74896
Analyzed
9.8
jahlives openssl_encrypt

A sandbox escape vulnerability in the DangerousPatternVisitor AST analyzer allows unauthenticated attackers to execute arbitrary system commands by by...

2026-08-18
CVE-2026-74895
Analyzed
9.8
jahlives openssl_encrypt

A failure in process isolation within jahlives openssl_encrypt before version 1.4.0 allows malicious plugins to bypass sandbox restrictions and gain f...

2026-08-18
CVE-2026-74894
Analyzed
9.8
jahlives openssl_encrypt

The openssl_encrypt library contains an authentication bypass in the verify_api_token function, allowing unauthenticated attackers to manipulate user...

2026-08-18
CVE-2026-74893
Analyzed
8.8
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74892
Analyzed
7.5
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74891
Analyzed
9.8
jahlives openssl_encrypt

The jahlives openssl_encrypt package contains hardcoded database credentials in standalone configuration files, allowing unauthorized network access t...

2026-08-18
CVE-2026-74889
Analyzed
9.8
jahlives openssl_encrypt

A cryptographic weakness in jahlives openssl_encrypt before version 1.4.0 allows for predictable key derivation due to improper HKDF implementation.

2026-08-18
CVE-2026-74888
Analyzed
7.5
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74886
Analyzed
9.8
jahlives openssl_encrypt

A plugin sandbox bypass vulnerability exists in jahlives openssl_encrypt before version 1.4.0, allowing unauthenticated attackers to execute arbitrary...

2026-08-18
CVE-2026-74884
Analyzed
7.5
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74883
Analyzed
8.8
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74882
Analyzed
7.5
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74880
Analyzed
9.8
jahlives openssl_encrypt

The openssl_encrypt library exposes sensitive refresh tokens in URL query parameters, leading to potential token leakage via server logs, proxy logs,...

2026-08-18
CVE-2026-74879
Analyzed
7.5
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74878
Analyzed
9.8
jahlives openssl_encrypt

The TOTP rate-limiting mechanism in openssl_encrypt is vulnerable to bypass because it uses local, non-persistent memory that is easily reset or distr...

2026-08-18
CVE-2026-74877
Analyzed
8.8
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74876
Analyzed
9.8
jahlives openssl_encrypt

A cryptographic signature verification bypass in openssl_encrypt allows attackers to encrypt sensitive data using arbitrary public keys by abusing the...

2026-08-18
CVE-2026-74875
Analyzed
9.8
jahlives openssl_encrypt

A schema validation bypass vulnerability in openssl_encrypt allows attackers to process malicious data by manipulating the jsonschema dependency or su...

2026-08-18
CVE-2026-74874
Analyzed
7.5
jahlives openssl_encrypt

openssl_encrypt versions before 1

2026-08-18
CVE-2026-74872
Analyzed
9.8
jahlives openssl_encrypt

An arbitrary code execution vulnerability exists in the Whirlpool hash implementation of jahlives openssl_encrypt, caused by insecure loading of share...

2026-08-18