All 3 CVE vulnerabilities found in elliptic-curves, with AI-generated Chinese analysis, references, and POCs.
Vendor: RustCrypto
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-22700 | RustCrypto Has Insufficient Length Validation in decrypt() in SM2-PKE CWE-20 | 7.5 | High | 2026-01-10 |
| CVE-2026-22699 | RustCrypto SM2-PKE has Unchecked AffinePoint Decoding (unwrap) in decrypt() CWE-20 | 7.5 | High | 2026-01-10 |
| CVE-2026-22698 | RustCrypto SM2-PKE has 32-bit Biased Nonce Vulnerability CWE-331 | 7.5 | - | 2026-01-10 |
All 3 known CVE vulnerabilities affecting elliptic-curves with full Chinese analysis, references, and POCs where available.