Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
717781
AlmaLinux
5103
Alpaquita
10949
Alpine
4284
Android
3402
Azure Linux
12016
BellSoft Hardened Containers
521
Bitnami
8145
Chainguard
7206
CleanStart
1514
CRAN
14
crates.io
2489
Debian
58700
Echo
5685
GHC
3
GIT
81700
GitHub Actions
54
Go
7845
Hackage
32
Hex
142
Julia
958
Linux
15361
Mageia
6002
Maven
6603
MinimOS
75359
npm
220934
NuGet
1750
opam
18
openEuler
7054
openSUSE
13132
OSS-Fuzz
3937
Packagist
6554
Pub
11
PyPI
20294
Red Hat
20783
Rocky Linux
3497
Root
16032
RubyGems
2000
SUSE
20931
SwiftURL
58
TuxCare
5651
Ubuntu
56308
VSCode
20
Wolfi
4730
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-2328-f5f3-gj25
npm/node-forge
Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation)
26 Mar
Fix available
Severity - 7.4 (High)
GHSA-q67f-28xg-22rw
npm/node-forge
Forge has signature forgery in Ed25519 due to missing S > L check
26 Mar
Fix available
Severity - 7.5 (High)
GHSA-ppp5-5v6c-4jwp
npm/node-forge
Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
26 Mar
Fix available
Severity - 7.5 (High)
GHSA-5m6q-g25r-mvwx
npm/node-forge
Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input
26 Mar
Fix available
Severity - 7.5 (High)
GHSA-554w-wpv2-vw27
npm/node-forge
node-forge has ASN.1 Unbounded Recursion
26 Nov 2025
Fix available
Severity - 8.7 (High)
GHSA-65ch-62r8-g69g
npm/node-forge
node-forge is vulnerable to ASN.1 OID Integer Truncation
26 Nov 2025
Fix available
Severity - 6.3 (Medium)
GHSA-5gfm-wpxj-wjgq
npm/node-forge
node-forge has an Interpretation Conflict vulnerability via its ASN.1 Validator Desynchronization
26 Nov 2025
Fix available
Severity - 8.7 (High)
GHSA-2r2c-g63r-vccr
npm/node-forge
Improper Verification of Cryptographic Signature in
`
node-forge
`
18 Mar 2022
Fix available
Severity - 5.3 (Medium)
GHSA-x4jg-mjrx-434g
npm/node-forge
Improper Verification of Cryptographic Signature in node-forge
18 Mar 2022
Fix available
Severity - 7.5 (High)
GHSA-cfm4-qjh2-4765
npm/node-forge
Improper Verification of Cryptographic Signature in node-forge
18 Mar 2022
Fix available
Severity - 7.5 (High)
GHSA-8fr3-hfg3-gpgp
npm/node-forge
Open Redirect in node-forge
21 Jan 2022
Fix available
Severity - 6.1 (Medium)
GHSA-5rrq-pxf6-6jx5
npm/node-forge
Prototype Pollution in node-forge debug API.
08 Jan 2022
Fix available
GHSA-wxgw-qj99-44c2
npm/node-forge
Prototype Pollution in node-forge util.setPath API
08 Jan 2022
Fix available
GHSA-gf8q-jrpm-jvxq
npm/node-forge
URL parsing in node-forge could lead to undesired behavior.
08 Jan 2022
Fix available
GHSA-92xj-mqp7-vmcj
npm/node-forge
Prototype Pollution in node-forge
14 Sep 2020
Fix available
Severity - 9.8 (Critical)
npm - OSV