Skip to content

algorithm confusion issue #367

Open
Open
@prasadayush

Description

@prasadayush

python-jose through 3.3.0 has algorithm confusion with OpenSSH ECDSA keys and other key formats. This is similar to CVE-2022-29217.

Below are the risk factors associated to this issue -
Critical severity, Package in use

Vulnerability link - https://nvd.nist.gov/vuln/detail/CVE-2024-33663

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions