Vendorsecdh Projectecdhall versions
Vulnerabilities

ecdh Project ecdh.js

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2022-44310
In Development IL ecdh before 0.2.0, an attacker can send an invalid point (not on the curve) as the public key, and obtain the derived shared secret.
Published 2023-02-24 · Modified
7.5EPSS 0.007