Latchset
1 CVEs tracked since 2016. Since Sep 2016, none of them reached CISA KEV.
Latchset CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2016-09 | 1 | 0 |
Products
The products that kept showing up in Latchset's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 9 most recently published vulnerabilities affecting Latchset.
- CVE-2026-39373JWCrypto: JWE ZIP decompression bomb5.3
- CVE-2025-59089Python-kdcproxy: remote dos via unbounded tcp upstream buffering5.9
- CVE-2025-59088Python-kdcproxy: unauthenticated ssrf via realm‑controlled dns srv8.6
- CVE-2025-11568Luksmeta: data corruption when handling luks1 partitions with luksmeta4.4
- CVE-2023-50967latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.7.5
- CVE-2024-28102JWCrypto vulnerable to JWT bomb Attack in `deserialize` function6.8
- CVE-2023-6681Jwcrypto: denail of service via specifically crafted jwe5.3
- CVE-2023-6258Pkcs11-provider: side-channel proofing pkcs#1 1.5 paths8.1
- CVE-2016-6298The _Rsa15 class in the RSA 1.5 algorithm implementation in jwa.py in jwcrypto before 0.3.2 lacks the Random Filling protection mechanism, which makes it easier for remote attackers to obtain clear...5.3
The record
- Peak rank
- #91 in Sep 2016
- Busiest month shown
- Sep 2016, 1 CVEs
- Months with a KEV entry
- 0 since Sep 2016
- Monthly snapshots
- 1 since 2016