Skip to main content

Vendor archive

rhonabwy_project CVEs

Beta · best-effort

3 CVEs tagged to vendor rhonabwy_project1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2022-38493

Published Aug 20, 2022

Rhonabwy 0.9.99 through 1.1.x before 1.1.7 doesn't check the RSA private key length before RSA-OAEP decryption. This allows attackers to cause a Denial of Service via a crafted JW…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-32096

Published Jul 13, 2022

Rhonabwy before v1.1.5 was discovered to contain a buffer overflow via the component r_jwe_aesgcm_key_unwrap. This vulnerability allows attackers to cause a Denial of Service (DoS…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1