CVE-2023-50782

A flaw was found in the python-cryptography package. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.

Scoring

Severity
HIGH
CVSS base score
7.5
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS probability
0.71%
CWE
CWE-208, CWE-385, CWE-203
Published
2024-02-05
Last modified
2026-03-24

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs