Vulnerabilities (CVE)

Filtered by vendor Digitalbazaar Subscribe
Filtered by product Node-forge
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-12816 1 Digitalbazaar 1 Node-forge 2025-12-30 N/A 8.6 HIGH
An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions.