CVE-2025-45767
BaseFortify
Publication date: 2025-08-01
Last updated on: 2025-08-21
Assigner: MITRE
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-327 | The product uses a broken or risky cryptographic algorithm or protocol. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
The vulnerability in jose v6.0.10 is due to the use of weak encryption, which means the cryptographic methods implemented are not strong enough to adequately protect data.
How can this vulnerability impact me? :
This vulnerability can impact you by potentially allowing attackers to decrypt or tamper with sensitive data that is supposed to be protected by jose v6.0.10, leading to data breaches or loss of data integrity.
How does this vulnerability affect compliance with common standards and regulations (like GDPR, HIPAA)?:
Using weak encryption as in jose v6.0.10 may lead to non-compliance with standards and regulations such as GDPR and HIPAA, which require strong protection of personal and sensitive data.