-
-
Notifications
You must be signed in to change notification settings - Fork 1.1k
Closed
Description
The audit of rxdb and rxdb-premium dependencies is causing the following:
- Critical rxdb-premium Elliptic's private key extraction in ECDSA upon signing a malformed input
- high rxdb ws affected by a DoS when handling a request with many HTTP headers
- high rxdb-premium secp256k1-node allows private key extraction over ECDH
Metadata
Metadata
Assignees
Labels
No labels