Vulnerabilities (CVE)

Filtered by vendor Dvsekhvalnov Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-63811 1 Dvsekhvalnov 1 Jose2go 2025-12-31 N/A 7.5 HIGH
An issue was discovered in dvsekhvalnov jose2go 1.5.0 thru 1.7.0 allowing an attacker to cause a Denial-of-Service (DoS) via crafted JSON Web Encryption (JWE) token with an exceptionally high compression ratio.
CVE-2023-50658 1 Dvsekhvalnov 1 Jose2go 2025-02-14 N/A 7.5 HIGH
The jose2go component before 1.6.0 for Go allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.