Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Rhonabwy before v1.1.5 was discovered to contain a buffer overflow via the component r_jwe_aesgcm_key_unwrap. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted JWE token.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rhonabwy 安全漏洞
Vulnerability Description
Rhonabwy是加拿大Nicolas Mora个人开发者的一个 Javascript 对象签名和加密 (JOSE) 库。 Rhonabwy v1.1.5之前版本存在安全漏洞,该漏洞源于发现通过组件r_jwe_aesgcm_key_unwrap包含一个缓冲区溢出,该漏洞允许攻击者通过精心制作的JWE令牌造成拒绝服务(DoS)。
CVSS Information
N/A
Vulnerability Type
N/A