-
Notifications
You must be signed in to change notification settings - Fork 21
Closed
Description
Because of
pyXMLSecurity/src/xmlsec/__init__.py
Line 479 in 2a34bca
| for cert_src in (public, private): |
we might leak the private key if e.g. cert_spec=None . This is very dangerous. I'm not completely sure how this interacts with pkcs11 -- will post a follow up soon.
Metadata
Metadata
Assignees
Labels
No labels