Security: randombit/botan
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
AutoSeeded_RNG can become reinitialized from predictable data after clearing stateGHSA-95xx-xh9v-v9c4 published
Sep 1, 2026 by randombitHigh -
Online OCSP redirects enable blind requests to internal HTTP servicesGHSA-9qgq-q9j4-4f82 published
Sep 1, 2026 by randombitModerate -
Python binding bcrypt APIs truncate passwords containing embedded NULsGHSA-w8gj-5xrm-gvrp published
Sep 1, 2026 by randombitModerate -
CLI utility `ocsp_check` accepts unauthenticated responsesGHSA-mpr7-9494-4qcw published
Sep 1, 2026 by randombitModerate -
Integer overflow when reporting block size in FFI can cause memory corruptionGHSA-c68p-822g-jfvr published
Sep 1, 2026 by randombitLow -
Scrypt heap overflow on 32-bit systemsGHSA-36rp-hhp4-wh83 published
Sep 1, 2026 by randombitModerate -
Bypass of DN nameConstraint enforcementGHSA-3mh2-26h4-wrqc published
Sep 1, 2026 by randombitLow -
Quadratic complexity decoding BER indefinite length encodingsGHSA-7q2v-3g27-6g3j published
May 7, 2026 by randombitModerate -
TLS 1.3 out of sequence ApplicationDataGHSA-pxcj-9ppx-g86g published
Apr 7, 2026 by randombitCritical -
Certificate authentication bypass due to trust anchor confusionGHSA-v782-6fq4-q827 published
Apr 7, 2026 by randombitCritical
Learn more about advisories related to randombit/botan in the GitHub Advisory Database