Business information leak In org.bitbucket.b_c:jose4j
This advisory was classified as a False Positive during our data review process to ensure accuracy and data quality.
Description
Elliptic Curve Key Disclosure Affected versions of the package are vulnerable to Elliptic Curve Key Disclosure.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
maven | 0.5.5 |
Aliases
1.
References
1. 2.