JavaScript Crypto Library OpenPGP.js Hit by High-Risk Spoofing Vulnerability

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

JavaScript Crypto Library OpenPGP.js Hit by High-Risk Spoofing Vulnerability

Post by Shane1145 »

A flaw has been discovered in OpenPGP.js, a widely used JavaScript library for OpenPGP encryption. Tracked as CVE-2025-47934, the vulnerability allows threat actors to spoof both signed and encrypted messages, effectively undermining the very foundation of trust in public key cryptography.

https://thecyberexpress.com/cve-2025-47 ... erability/
Post Reply