Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

jahlives — Vulnerabilities & Security Advisories 30

Browse all 30 CVE security advisories affecting jahlives. AI-powered Chinese analysis, POCs, and references for each vulnerability.

This page documents security vulnerabilities associated with the vendor jahlives, focusing on common software weakness classifications and tagged findings. The collection aggregates historical data and recent disclosures to provide a comprehensive view of the security landscape for products developed or distributed by this entity. The time range covered spans multiple years, capturing both past resolutions and emerging threats that have impacted the vendor’s ecosystem over time. Users can utilize this resource to track a vendor's advisories by reviewing how specific issues were reported and patched. Additionally, the page allows for a deeper understanding of a weakness class by examining how frequently certain vulnerability types appear across different products within the vendor’s portfolio. It also enables researchers to look up a product's vulnerability history, offering insights into recurring security patterns or persistent technical debt. This structured approach helps stakeholders assess risk exposure and prioritize remediation efforts based on actual historical data rather than isolated incidents. By centralizing these details, the page serves as a reference for security analysts, developers, and procurement teams who need to evaluate the trustworthiness and maintenance practices of jahlives. The information presented is derived from publicly available sources, including security bulletins and database entries, ensuring transparency and accuracy in the reporting process. This aggregation supports informed decision-making regarding software selection and security compliance, without relying on speculative assessments or outdated records.

Found 30 results / 30Clear Filters
Top products by jahlives: openssl_encrypt
CVE IDTitleCVSSSeverityPublished
CVE-2026-74901 openssl_encrypt before 1.4.0 Authentication Bypass via AES-CTR Fallback — openssl_encryptCWE-347 9.8 Critical2026-08-17
CVE-2026-74899 openssl_encrypt before 1.4.0 Sandbox Escape via Type Hierarchy — openssl_encryptCWE-95 9.8 Critical2026-08-17
CVE-2026-74900 openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode — openssl_encryptCWE-391 9.8 Critical2026-08-17
CVE-2026-74896 openssl_encrypt before 1.4.0 Sandbox Escape via Dunder Attribute Traversal — openssl_encryptCWE-693 9.8 Critical2026-08-17
CVE-2026-74895 openssl_encrypt before 1.4.0 Plugin Sandbox Bypass via Process Isolation — openssl_encryptCWE-693 9.8 Critical2026-08-17
CVE-2026-74894 openssl_encrypt before 1.4.0 Authentication Bypass via Bearer Token — openssl_encryptCWE-287 9.8 Critical2026-08-17
CVE-2026-74893 openssl_encrypt before 1.4.0 JWT Token Forgery via Hardcoded Secrets — openssl_encryptCWE-798 8.8 High2026-08-17
CVE-2026-74891 openssl_encrypt before 1.4.0 Hardcoded Database Credentials — openssl_encryptCWE-798 9.8 Critical2026-08-17
CVE-2026-74892 openssl_encrypt before 1.4.0 Hardcoded Secret Key — openssl_encryptCWE-798 7.5 High2026-08-17
CVE-2026-74890 openssl_encrypt before 1.4.0 HMAC Authentication Bypass via Environment Variable — openssl_encryptCWE-345 5.5 Medium2026-08-17
CVE-2026-74889 openssl_encrypt before 1.4.0 Weak Key Derivation via HKDF — openssl_encryptCWE-326 9.8 Critical2026-08-17
CVE-2026-74888 openssl_encrypt before 1.4.0 Non-Standard PBKDF2 Key Derivation — openssl_encryptCWE-327 7.5 High2026-08-17
CVE-2026-74887 openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module — openssl_encryptCWE-338--2026-08-17
CVE-2026-74886 openssl_encrypt before 1.4.0 Plugin Import Guard Bypass — openssl_encryptCWE-184 9.8 Critical2026-08-17
CVE-2026-74884 openssl_encrypt before 1.4.0 Path Traversal via plugin_id — openssl_encryptCWE-73 7.5 High2026-08-17
CVE-2026-74885 openssl_encrypt before 1.4.0 Logging Bug and Race Condition — openssl_encryptCWE-117 3.6 Low2026-08-17
CVE-2026-74883 openssl_encrypt before 1.4.0 Sandbox Bypass via pathlib and io — openssl_encryptCWE-693 8.8 High2026-08-17
CVE-2026-74881 openssl_encrypt before 1.4.0 CORS Misconfiguration via Wildcard Origins — openssl_encryptCWE-942 6.5 Medium2026-08-17
CVE-2026-74882 openssl_encrypt before 1.4.0 Insecure Default Configuration — openssl_encryptCWE-345 7.5 High2026-08-17
CVE-2026-74880 openssl_encrypt before 1.4.0 Token Leakage via Query Parameters — openssl_encryptCWE-598 9.8 Critical2026-08-17
CVE-2026-74878 openssl_encrypt before 1.4.0 TOTP Rate Limiter Bypass — openssl_encryptCWE-770 9.8 Critical2026-08-17
CVE-2026-74879 openssl_encrypt before 1.4.0 Information Disclosure via /ready endpoint — openssl_encryptCWE-209 7.5 High2026-08-17
CVE-2026-74877 openssl_encrypt before 1.4.0 Missing Ownership Verification via revoke_key — openssl_encryptCWE-639 8.8 High2026-08-17
CVE-2026-74876 openssl_encrypt before 1.4.0 Unverified Key Bundle Encryption — openssl_encryptCWE-347 9.8 Critical2026-08-17
CVE-2026-74875 openssl_encrypt before 1.4.0 Schema Validation Bypass — openssl_encryptCWE-345 9.8 Critical2026-08-17
CVE-2026-74874 openssl_encrypt before 1.4.0 Weak PRNG Steganography Pixel Selection — openssl_encryptCWE-338 7.5 High2026-08-17
CVE-2026-74873 openssl_encrypt before 1.4.0 Password Exposure via CLI Argument — openssl_encryptCWE-214 5.5 Medium2026-08-17
CVE-2026-74872 openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool — openssl_encryptCWE-426 9.8 Critical2026-08-17
CVE-2026-74871 openssl_encrypt before 1.4.6 KDF Bypass via Sequential-XOR — openssl_encryptCWE-916 6.2 Medium2026-08-17
CVE-2026-74870 openssl_encrypt before 1.4.8 Hardware Pepper Information Disclosure — openssl_encryptCWE-532 3.3 Low2026-08-17

This page lists every published CVE security advisory associated with jahlives. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.