Product
high
advisory
Hardcoded JWT Signing Secrets in openssl_encrypt
1 TTP 1 CVEThe openssl_encrypt library versions before 1.4.0 contain hardcoded JWT signing secrets that allow for arbitrary token forgery and unauthorized API access.
openssl_encrypt
1t
1c
critical
advisory
Arbitrary Code Execution in openssl_encrypt Library
1 rule 8 TTPs 1 CVEThe openssl_encrypt library before version 1.4.0 contains a vulnerability in its Whirlpool hash implementation that allows arbitrary code execution via untrusted shared object loading.
openssl_encrypt +1
vulnerability
rce
python
supply-chain
library-vulnerability
cryptography
cve-2026-74876
authentication-bypass
+6
1r
8t
1c