OpenPGP.js <=4.1.2 Vulnerability: Signature Verification Bypass

OpenPGP.js <=4.1.2 Vulnerability: Signature Verification Bypass

CVE-2019-9154 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

Improper Verification of a Cryptographic Signature in OpenPGP.js <=4.1.2 allows an attacker to pass off unsigned data as signed.

Learn more about our Web Application Penetration Testing UK.