Vulnerabilities > Openpubkey > Opkssh > 0.2.0

DATE CVE VULNERABILITY TITLE RISK
2025-05-13 CVE-2025-4658 Improper Verification of Cryptographic Signature vulnerability in Openpubkey and Opkssh
Versions of OpenPubkey library prior to 0.10.0 contained a vulnerability that would allow a specially crafted JWS to bypass signature verification.
network
low complexity
openpubkey CWE-347
critical
9.8