Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23364 | jose v6.0.10 was discovered to contain weak encryption. NOTE: this is disputed by a third party because the claim of "do not meet recommended security standards" does not reflect guidance in a final publication. |
Thu, 21 Aug 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 11 Aug 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 04 Aug 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | jose: Jose Weak Encryption Vulnerability | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Sun, 03 Aug 2025 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | jose v6.0.10 was discovered to contain weak encryption. | jose v6.0.10 was discovered to contain weak encryption. NOTE: this is disputed by a third party because the claim of "do not meet recommended security standards" does not reflect guidance in a final publication. |
Fri, 01 Aug 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-327 | |
| Metrics |
cvssV3_1
|
Fri, 01 Aug 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | jose v6.0.10 was discovered to contain weak encryption. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-21T15:27:28.346Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-45767
Updated: 2025-08-01T15:21:32.381Z
Status : Deferred
Published: 2025-08-01T15:15:32.543
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-45767
OpenCVE Enrichment
No data.
EUVD