Tag
high
advisory
Forge Ed25519 Signature Forgery Vulnerability
2 rules 1 TTPForge is vulnerable to signature forgery in Ed25519 due to a missing check that S < L, allowing non-canonical signatures and potentially bypassing authentication/authorization logic, affecting versions before 1.4.0.
ed25519
signature-forgery
forge
javascript
2r
1t
critical
advisory
jsrsasign DSA Signature Forgery Vulnerability (CVE-2026-4600)
2 rules 1 TTPThe jsrsasign package before version 11.1.1 is vulnerable to cryptographic signature forgery (CVE-2026-4600) due to improper DSA domain-parameter validation, allowing attackers to forge DSA signatures or X.509 certificates, potentially leading to unauthorized access or code execution.
jsrsasign
signature-forgery
dsa
cve-2026-4600
2r
1t