bouncycastle
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 57 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 30, 2009 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS)
Lazy ASN.1 sequence forcing resets nesting-depth guard
RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path
MLS wire decoder allocates attacker-declared opaque length before bounds check
OpenPGP AEAD decryption skips final tag on chunk-aligned data
IESEngine stream-mode MAC forgery via length-dependent KDF split
KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery)
CMS AuthEnvelopedData fails to enforce tag-length on decryption
Possible OOM from unbounded up-front allocation on a definite-length read
Quadratic-time escaping when stringifying X.500 distinguished names
Monitor bouncycastle in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.