Known vulnerabilities in xml-crypto
Vendor:
Node SAML Organization
Software:
xml-crypto
Software CPE:
cpe:2.3:a:node_saml_organization:xml-crypto:*:*:*:*:*:*:*:*
Website:
https://github.com/node-saml
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
6.1.2
6.1.1
6.1.0
6.0.1
6.0.0
5.1.1
5.1.0
5.0.0
4.1.0
4.0.1
4.0.0
3.2.1
3.2.0
3.1.0
3.0.1
3.0.0
2.1.6
2.1.5
2.1.4
2.1.3
2.1.2
2.1.1
2.1.0
2.0.0
1.5.6
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5.0
1.4.1
1.4.0
1.3.0
1.2.0
1.1.4
1.1.3
1.1.2
1.1.1
1.1.0
1.0.2
1.0.1
1.0.0
1
0.9.0
0.8.5
0.8.4
0.8.3
0.8.2
0.8.1
0.8.0
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU111985 - Improper Verification of Cryptographic Signature CVE-2025-29775 |
CWE-347 | Critical | 2.1.6, 3.2.1, 6.0.1 | 27.06.2025 |
SB2025062706 SB2025063009 SB2025063018 and 1 more |
||
| #VU111978 - Improper Verification of Cryptographic Signature CVE-2025-29774 |
CWE-347 | Critical | 2.1.6, 3.2.1, 6.0.1 | 26.06.2025 |
SB2025062652 SB2025063009 SB2025063018 and 1 more |