Skip to main content
Loading…
    CVE-2026-4258 — All versions of the package sjcl are vulnerable to Improper Verification of Cryptographic Signature due to missing point-on-curve validation in sjcl.ecc.basicKey.publicKey(). An attacker can recover a — CVE Database · The Intelligence Room