Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 0.6% on npmjs.org
Top 0.2% downloads on npmjs.org
Top 0.1% dependent packages on npmjs.org
Top 0.3% dependent repos on npmjs.org
Top 1.5% forks on npmjs.org
Top 0.1% docker downloads on npmjs.org

npmjs.org : jsrsasign

opensource free pure JavaScript cryptographic library supports RSA/RSAPSS/ECDSA/DSA signing/validation, ASN.1, PKCS#1/5/8 private/public key, X.509 certificate, CRL, OCSP, CMS SignedData, TimeStamp and CAdES and JSON Web Signature(JWS)/Token(JWT)/Key(JWK)

Registry - Source - Homepage - JSON
purl: pkg:npm/jsrsasign
Keywords: crypto, cryptography, Cipher, RSA, ECDSA, DSA, RSAPSS, PKCS#1, PKCS#5, PKCS#8, private key, public key, CSR, PKCS#10, hash function, HMac, ASN.1, certificate, X.509, CRL, OCSP, RFC 3161, Digital Timestamp, Timestamp, Time Stamp Token, CMS, Cryptgraphic Message Syntax, PKCS#7, Signature, Digital Signature, signing, Message Digest, JSON Web Token, JWT, JSON Web Signature, JWS, JSON Web Key, JWK, JOSE, JWA, 3des, aes, asn1, cms, crl, decryption, dsa, ecdsa, encryption, ocsp, rsa, sha1, sha2, signature, timestamp, x509
License: MIT
Latest release: 3 months ago
First release: over 10 years ago
Dependent packages: 731
Dependent repositories: 8,042
Downloads: 1,648,663 last month
Stars: 3,191 on GitHub
Forks: 644 on GitHub
Docker dependents: 183
Docker downloads: 176,885,324
See more repository details: repos.ecosyste.ms
Funding links: https://github.com/kjur/jsrsasign#donations, https://github.com/sponsors/kjur
Last synced: about 15 hours ago

High
GSA_kwCzR0hTQS0zZnZnLTR2Mm0tOThqZs4AAs_P
JWS and JWT signature validation vulnerability with special characters
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: almost 2 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA4YzMtN3JqOC1xOTYz
ECDSA signature validation vulnerability by accepting wrong ASN.1 encoding in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: almost 4 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWc3NTMtangzNy03eHdo
ECDSA signature vulnerability of Minerva timing attack in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: almost 4 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXh4eHEtY2htcC02N2c0
RSA PKCS#1 decryption vulnerability with prepending zeros in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: almost 4 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg4N3EtZzJ3cC00N3Bq
Signatures are mistakenly recognized to be valid in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: about 2 years ago
High
GSA_kwCzR0hTQS1yaDYzLTlxY2YtODNnZs4AA4kS
Marvin Attack of RSA and RSAOAEP decryption in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: 4 months ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTI3ZmotbWM4dy1qOXdn
RSA signature validation vulnerability on maleable encoded message in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: about 3 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXEzZ2gtNXI5OC1qNGgz
RSA-PSS signature validation vulnerability by prepending zeros in jsrsasign
Ecosystems: npm
Packages: jsrsasign
Source: github
Published: almost 4 years ago