openssl-encrypt
PyPI60 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting openssl-encryptpage 1 of 2
- CVE-2026-74870LOWCVSS 3.3EG 3.3✓ Fixed in 1.4.72026-08-17
vulnerable: 0.2.2 ... 1.4.6 (51 versions)
openssl_encrypt (pip) versions <= 1.4.7 contain an information exposure vulnerability where the 'hsm fido2-test' and 'hsm onlykey-test' diagnostic commands unconditionally print the full derived hardware pepper as hex to stdout/stderr (cry…
- CVE-2026-74871MEDIUMCVSS 5.5EG 6.2✓ Fixed in 1.4.62026-08-17
vulnerable: 0.2.2 ... 1.4.5 (50 versions)
openssl_encrypt versions before 1.4.6 contain a key derivation flaw in sequential XOR composition mode where the last stage cancels out during key generation. When configured with a single KDF and no prior hashing stage, attackers can bypa…
- CVE-2026-74872CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain an arbitrary code execution vulnerability in the Whirlpool hash implementation that uses broad glob patterns to load .so modules without integrity verification. Attackers can place malicious .s…
- CVE-2026-74873MEDIUMCVSS 5.5EG 5.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 expose passwords passed via the --password CLI argument in process listings accessible to all system users. Attackers can read process arguments through ps aux or /proc/[pid]/cmdline to retrieve plaint…
- CVE-2026-74874HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 use Python's non-cryptographic random module for steganographic pixel selection in the generate_pseudorandom_sequence function. Attackers who know the password can recover the Mersenne Twister state fr…
- CVE-2026-74875CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 silently skip JSON schema validation when the jsonschema library is not installed, allowing malformed metadata to be accepted. Attackers can remove the jsonschema package or supply unknown metadata for…
- CVE-2026-74876CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a vulnerability in PublicKeyBundle.from_dict() that creates key bundles from untrusted data without verifying signatures. Attackers can call from_dict() followed by to_identity() without signat…
- CVE-2026-74877HIGHCVSS 8.8EG 8.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a missing ownership verification vulnerability in the revoke_key method that allows authenticated clients to revoke any other client's key. Attackers can revoke arbitrary keys by providing a va…
- CVE-2026-74878CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 use an in-memory rate limiter for TOTP brute-force protection that is not shared across workers and is lost on server restart. Attackers can distribute authentication attempts across multiple server in…
- CVE-2026-74879HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain an information disclosure vulnerability in the /ready endpoint that returns full database exception strings to unauthenticated callers. Attackers can trigger database errors to extract sensitiv…
- CVE-2026-74880CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 accept refresh tokens as URL query parameters in keyserver and telemetry server routes. Attackers can extract tokens from server logs, proxy logs, browser history, and HTTP Referer headers to gain unau…
- CVE-2026-74881CRITICALCVSS 9.3EG 9.3✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 configure CORS with allow_origins set to wildcard and allow_credentials enabled to true. Attackers can create malicious websites that make authenticated cross-origin requests to the API on behalf of an…
- CVE-2026-74882CRITICALCVSS 9.1EG 9.1✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain an insecure default configuration that trusts the entire RFC 1918 private address space in IntegrityProxyConfig trusted_proxies. Attackers on private networks can forge client certificate heade…
- CVE-2026-74883HIGHCVSS 8.8EG 8.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a sandbox bypass vulnerability where the plugin sandbox fails to restrict alternative file access methods like pathlib.Path and io.open. Attackers can import pathlib or io modules to read and w…
- CVE-2026-74884HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a path traversal vulnerability in the _is_safe_path method where the plugin_id parameter is not sanitized before constructing the plugin config directory path. Attackers can declare a malicious…
- CVE-2026-74885LOWCVSS 3.6EG 3.6✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a logging bug in restore_hidden_modules() that logs module counts after clearing, always showing zero restored modules and corrupting audit trails. Additionally, a race condition exists between…
- CVE-2026-74886CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a plugin sandbox bypass vulnerability where the PluginImportGuard blocks a different set of modules than the AST analyzer's DANGEROUS_MODULES set. Attackers can bypass AST analysis through stri…
- CVE-2026-74887MEDIUMCVSS 5.9EG 5.9✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt before 1.4.0 imports Python's non-cryptographic 'random' module (Mersenne Twister PRNG) at line 15 of openssl_encrypt/modules/pqc.py. No direct calls to random.* were present in the code, so no cryptographic operation is cu…
- CVE-2026-74888HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 use a non-standard PBKDF2 key derivation construction with iterations=1 per call in an outer loop, creating a KDF whose security properties have not been formally analyzed. Attackers can exploit this w…
- CVE-2026-74889CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 use HKDF with no salt and static info parameter in key normalization functions, reducing entropy extraction and determinism. Attackers can exploit predictable key derivation with identical inputs to we…
- CVE-2026-74890MEDIUMCVSS 5.5EG 5.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in CamelliaCipher that disables HMAC tag generation and verification when the PYTEST_CURRENT_TEST environment variable is set. Attackers with code executi…
- CVE-2026-74891CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain hardcoded database credentials in standalone server configuration files. Attackers on the same network can access PostgreSQL databases using well-known default credentials to retrieve sensitive…
- CVE-2026-74892HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a hardcoded default secret key in the standalone telemetry server configuration that is used for API key hashing. Attackers who know this default value can predict or forge API key hashes to co…
- CVE-2026-74893HIGHCVSS 8.8EG 8.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain hardcoded default JWT signing secrets in config.py that pass validation checks. Attackers with access to source code can forge valid JWT tokens for any client_id to gain authenticated access to…
- CVE-2026-74894CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt before 1.4.0 contains an authentication bypass vulnerability in the verify_api_token function that accepts any non-empty Bearer token string without validation. Attackers can upload arbitrary public keys, enumerate all keys…
- CVE-2026-74895CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 fail to apply sandbox restrictions in the default process isolation mode for plugin execution. Attackers can execute malicious plugins with unrestricted access to the filesystem, network, subprocess ex…
- CVE-2026-74896CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a sandbox escape vulnerability in the DangerousPatternVisitor AST analyzer that fails to detect dunder attribute traversal techniques. Attackers can use __class__, __bases__, __subclasses__(), …
- CVE-2026-74899CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a sandbox escape vulnerability in IsolatedPluginExecutor that exposes Python type objects in restricted exec() builtins. Attackers can traverse the Python class hierarchy via __class__.__mro__.…
- CVE-2026-74900CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain a critical vulnerability in pqc.py where KEM decapsulation failures silently fall back to simulation mode, generating a deterministic shared secret from only 16 bytes of the private key and pub…
- CVE-2026-74901CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.02026-08-17
vulnerable: 0.2.2 ... 1.4.0b8 (44 versions)
openssl_encrypt versions before 1.4.0 contain an authentication bypass vulnerability in pqc.py where AES-GCM decryption failures trigger fallback to unauthenticated AES-CTR mode. Attackers can modify ciphertext in transit to bypass integri…
- CVE-2026-81680MEDIUMCVSS 5.3EG 5.3✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to authenticate recovery-slot presence in envelope-format encrypted files, allowing attackers to remove recovery slots without re-encrypting the payload. Attackers can modify the file header to de…
- CVE-2026-81681MEDIUMCVSS 4.6EG 4.6✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8 advertise a portable USB workspace as an 'Encrypted USB Workspace' with AES-256-GCM encryption and write a marker declaring the workspace encrypted, but the workspace director…
- CVE-2026-81683HIGHCVSS 5.5EG 8.4✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt (pip package openssl-encrypt) versions 1.4.8 and earlier store an mTLS client private key in cleartext within a world-readable (0644) SharedPreferences file via the desktop GUI's Settings screen 'combined certificate and pr…
- CVE-2026-81684MEDIUMCVSS 6.2EG 6.2✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
In openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8, the desktop GUI passes the steganography password to the CLI child process on the command line via the --stego-password argument (on both encrypt and decrypt paths) instea…
- CVE-2026-81685LOWCVSS 3.3EG 3.3✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to sanitize recovery-slot metadata in the desktop GUI, allowing attackers to inject control characters and line separators into the irreversible-removal confirmation dialog. Attackers can craft en…
- CVE-2026-81686MEDIUMCVSS 5.5EG 6.2✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt 1.4.x before 1.4.9 contains an optional D-Bus crypto service whose org.freedesktop.DBus.Properties.Set method performs neither a polkit authorization check nor value validation. Any local user on the system bus can call Set…
- CVE-2026-81688HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 store an unkeyed SHA-256 hash of the plaintext in the cleartext file header metadata. Attackers can read this hash without the password to confirm guessed plaintexts offline or fingerprint identical pl…
- CVE-2026-81689HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 derive the remote-pepper wrap key using unsalted HKDF-SHA256 or bare SHA-256 of the password, allowing identical keys across all users and files. Attackers with access to wrapped pepper blobs can preco…
- CVE-2026-81690HIGHCVSS 7.3EG 7.3✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl-encrypt (pip package) before 1.4.9 contains a symlink-following flaw in its verify-usb v2 added-file allowlist scan. The scan enumerated the drive with rglob(), which in CPython does not descend into symlinked directories and treat…
- CVE-2026-81691HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to validate server URLs in login and register_with_email functions, accepting unencrypted http:// URLs and unconfigured hosts. Attackers on the network path can intercept cleartext credentials inc…
- CVE-2026-81693HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt before 1.4.9 fails to validate the total field from QR JSON payloads before materializing ranges. Attackers can supply crafted QR images with extremely large total values to trigger unbounded memory allocation and cause den…
- CVE-2026-81694LOWCVSS 3.3EG 3.3✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl-encrypt (pip package, versions <= 1.4.8) fails to sanitize filenames read from untrusted drive data (outside the AES-GCM authenticated manifest) before printing them in the verify-usb command's output. An attacker can plant filenam…
- CVE-2026-81695LOWCVSS 3.3EG 3.3✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to escape attacker-controlled key_id values printed to stderr during decrypt auto-detection. Attackers can craft encrypted files with malicious key_id containing escape sequences to repaint termin…
- CVE-2026-81696LOWCVSS 3.3EG 3.3✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to sanitize terminal control characters in file metadata printed by the info command. Attackers can craft malicious files containing escape sequences to repaint terminal output and forge verificat…
- CVE-2026-81698HIGHCVSS 8.8EG 8.8✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 contain a shell injection vulnerability in the info command's reconstructed CLI block that interpolates untrusted metadata fields without quoting. Attackers can craft metadata values like pepper_name c…
- CVE-2026-81699HIGHCVSS 7.5EG 7.5✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to properly validate key derivation function costs in crafted files, allowing attackers to trigger unbounded memory and CPU exhaustion during pre-authentication processing. Attackers can supply ma…
- CVE-2026-81700CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 contain a signature verification vulnerability in gpg_runner.verify_detached that accepts revoked and expired keys by only checking VALIDSIG status without inspecting REVKEYSIG, EXPKEYSIG, or gpg exit …
- CVE-2026-81701CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 use a denylist to identify trusted built-in plugins, allowing unsigned plugins in top-level plugins/ directories and unknown subdirectories to bypass signature verification. Attackers can place malicio…
- CVE-2026-81702CRITICALCVSS 9.8EG 9.8✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt before 1.4.9 fails to re-derive and validate fingerprints when loading identities from identity.json, allowing attackers to substitute public keys in identity stores. Attackers can replace legitimate public keys with their …
- CVE-2026-81703MEDIUMCVSS 5.5EG 5.5✓ Fixed in 1.4.92026-08-27
vulnerable: 0.2.2 ... 1.4.8 (53 versions)
openssl_encrypt versions before 1.4.9 fail to validate encryption status of embedded post-quantum private keys in file metadata. Attackers can craft files with unencrypted embedded PQC keys that decrypt under any password, bypassing authen…
Check whether openssl-encrypt is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for openssl-encrypt CVEs against the assets you own.
Start Free Scan →