Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

openssl_encrypt — Vulnerabilities & Security Advisories 66

All 66 CVE vulnerabilities found in openssl_encrypt, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data for openssl_encrypt, a function within the OpenSSL cryptography library, categorized under the weakness type of Cryptographic Issues. The collection comprises security flaws reported in the openssl_encrypt function and related components, covering disclosures from 2005 to the present year. Readers can utilize this index to track specific advisories issued by the vendor, analyze the prevalence and evolution of cryptographic implementation errors, and review the complete vulnerability history associated with this cryptographic primitive. The data supports security audits and risk assessment by providing a consolidated view of past weaknesses, including improper key handling, predictable random number generation, and insufficient algorithm strength. By examining the timeline and severity scores, organizations can identify recurring patterns in implementation failures and assess the long-term stability of their cryptographic infrastructure. This resource serves as a technical reference for developers and security professionals seeking to understand historical failure points in OpenSSL encryption functions, enabling better-informed decisions regarding library updates, code refactoring, and the adoption of modern cryptographic standards to mitigate known and emerging threats.

Vendor: jahlives

CVE ID Title CVSS Severity Published
CVE-2026-81721 openssl_encrypt before 1.4.9 Denial of Service via KDF CWE-400 7.5 High 2026-08-27
CVE-2026-81720 openssl_encrypt before 1.4.9 Denial of Service via Unbounded Argon2 CWE-400 6.2 Medium 2026-08-27
CVE-2026-81719 openssl_encrypt before 1.4.9 Remote Code Execution via Plugin CWE-94 7.8 High 2026-08-27
CVE-2026-81718 openssl_encrypt before 1.4.9 Weak Cryptographic Parameters CWE-326 7.5 High 2026-08-27
CVE-2026-81717 openssl_encrypt before 1.4.9 Integrity Bypass via Added Files CWE-347 3.5 Low 2026-08-27
CVE-2026-81716 openssl_encrypt before 1.4.9 Plugin Sandbox Path Traversal CWE-22 5.2 Medium 2026-08-27
CVE-2026-81715 openssl_encrypt before 1.4.9 Credential Exposure via Debug Output CWE-532 3.3 Low 2026-08-27
CVE-2026-81714 openssl_encrypt before 1.4.9 Plugin Signing Trust Anchor Enrollment Bypass CWE-347 7.0 High 2026-08-27
CVE-2026-81707 openssl_encrypt before 1.4.9 ANSI Escape Injection via Identity Email CWE-20 9.8 Critical 2026-08-27
CVE-2026-81706 openssl_encrypt before 1.4.9 Key Substitution via Identity Shadowing CWE-345 6.8 Medium 2026-08-27
CVE-2026-81705 openssl-encrypt before 1.4.9 Password Cleartext Leak via Debug CWE-532 7.5 High 2026-08-27
CVE-2026-81704 openssl_encrypt before 1.4.9 Weak Key Derivation via D-Bus CWE-916 7.5 High 2026-08-27
CVE-2026-81703 openssl_encrypt before 1.4.9 Authentication Bypass via Unencrypted PQC Key CWE-287 5.5 Medium 2026-08-27
CVE-2026-81702 openssl_encrypt before 1.4.9 Key Substitution via Identity Load CWE-345 9.8 Critical 2026-08-27
CVE-2026-81701 openssl_encrypt before 1.4.9 Arbitrary Code Execution via unsigned plugin CWE-347 9.8 Critical 2026-08-27
CVE-2026-81700 openssl_encrypt before 1.4.9 GPG Signature Verification Bypass CWE-347 9.8 Critical 2026-08-27
CVE-2026-81699 openssl_encrypt before 1.4.9 Denial of Service via unbounded KDF cost CWE-770 7.5 High 2026-08-27
CVE-2026-81698 openssl_encrypt before 1.4.9 Shell Injection via info command CWE-78 7.5 High 2026-08-27
CVE-2026-81697 openssl_encrypt before 1.4.9 KDF Downgrade via CWD-relative Configuration CWE-426 5.5 Medium 2026-08-27
CVE-2026-81696 openssl_encrypt before 1.4.9 Terminal Injection via info Command CWE-117 3.3 Low 2026-08-27
CVE-2026-81695 openssl_encrypt before 1.4.9 Terminal Injection via key_id CWE-117 3.3 Low 2026-08-27
CVE-2026-81694 verify-usb before 1.4.9 Output Injection via Unsanitized Filenames CWE-117 3.3 Low 2026-08-27
CVE-2026-81693 openssl_encrypt before 1.4.9 Denial of Service via QR total field CWE-789 7.5 High 2026-08-27
CVE-2026-81692 openssl_encrypt before 1.4.9 Denial of Service via STREAMINFO CWE-789 7.5 High 2026-08-27
CVE-2026-81691 openssl_encrypt before 1.4.9 Credential Leakage via Unvalidated Server URLs CWE-319 7.5 High 2026-08-27
CVE-2026-81689 openssl_encrypt before 1.4.9 Weak Pepper Key Derivation CWE-916 7.5 High 2026-08-27
CVE-2026-81690 verify-usb before 1.4.9 Symlink Directory Traversal Code Execution CWE-59 7.3 High 2026-08-27
CVE-2026-81688 openssl_encrypt before 1.4.9 Plaintext Confirmation Oracle via SHA-256 CWE-311 7.5 High 2026-08-27
CVE-2026-81687 openssl_encrypt before 1.4.9 Denial of Service via KDF CWE-400 5.5 Medium 2026-08-27
CVE-2026-81686 openssl_encrypt before 1.4.9 D-Bus Properties Authorization Bypass CWE-20 6.2 Medium 2026-08-27

All 66 known CVE vulnerabilities affecting openssl_encrypt with full Chinese analysis, references, and POCs where available.