Logo
vulnerabilityCVE-2025-12816
Name
CVE-2025-12816
Source
NVD ( link)Debian ( link)
Description
An interpretation-conflict (CWE-436) vulnerability in node-forge versions 1.3.1 and earlier enables unauthenticated attackers to craft ASN.1 structures to desynchronize schema validations, yielding a semantic divergence that may bypass downstream cryptographic verifications and security decisions.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
forge
Exploitable

Vulnerability Ratings#


8.6
CVSSv31
NaN
other