CWE-327: Use of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.
341 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-21718 — Copeland XWEB and XWEB Pro Use of a Broken or Risky Cryptographic Algorithm
- CVE-2025-54426 — Polkadot Frontier contains silent failure in Curve25519 arithmetic precompiles with malformed points
- CVE-2024-51478 — Use of a Broken or Risky Cryptographic Algorithm in YesWiki
- CVE-2026-28252 — Use of a Broken or Risky Cryptographic Algorithm vulnerability in Trane Tracer SC, Tracer SC+, and Tracer Concierge
- CVE-2025-3200 — Com-Server Exposed via Weak TLS
- CVE-2025-66597 — A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product supports weak cr
- CVE-2026-3598 — RustDesk Server Generates Config Strings Using Reversible Encoding (Base64 + Reverse) Instead of Encryption
- CVE-2026-30791 — RustDesk Client Accepts Pseudo-Encrypted Config Strings Without Cryptographic Validation
- CVE-2026-28479 — OpenClaw < 2026.2.15 - Cache Poisoning via Deprecated SHA-1 Hash in Sandbox Configuration
- CVE-2025-68931 — Jervis has AES CBC Mode Without Authentication
- CVE-2025-68702 — Jervis has a SHA-256 Hex String Padding Bug
- CVE-2025-68701 — Jervis has Deterministic AES IV Derivation from Passphrase
- CVE-2025-68698 — Jervis has an RSA PKCS#1 v1.5 Padding Vulnerability
- CVE-2025-65951 — Inside Track / Entropy Derby Timelock Encryption Bypassed via Pre-Computed VDF Output Leakage
- CVE-2025-59484 — AutomationDirect CLICK PLUS Use of a Broken or Risky Cryptographic Algorithm
- CVE-2025-24007 — A vulnerability has been identified in SIRIUS 3RK3 Modular Safety System (MSS) (All versions), SIRIUS Safety Relays 3SK2
- CVE-2025-9317 — AVEVA Edge Use of a Broken or Risky Cryptographic Algorithm
- CVE-2024-47921 — Smadar SPS – CWE-327: Use of a Broken or Risky Cryptographic Algorithm
- CVE-2026-50086 — Aqara unauthenticated AES oracle
- CVE-2026-28490 — Authlib Vulnerable to JWE RSA1_5 Bleichenbacher Padding Oracle
Recently published
- CVE-2026-81822 — AVEVA Pipeline Integrity Monitor Use of a Broken or Risky Cryptographic Algorithm
- CVE-2026-16693 — IBM i is Affected By Cryptographic Algorithm Weakness in DCM []
- CVE-2026-81859 — Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for August 2026.
- CVE-2026-76133 — Ebyte NA111-M Use of a Broken or Risky Cryptographic Algorithm
- CVE-2026-39944 — Ceph: CephX AES Authentication error
- CVE-2025-30156 — Ceph: AES-CBC misuse in CephX and RADOSGW enables authentication bypass and credential forgery
- CVE-2026-77151 — lin-snow Ech0 crypto.go MD5Encrypt risky encryption
- CVE-2026-74888 — openssl_encrypt before 1.4.0 Non-Standard PBKDF2 Key Derivation
- CVE-2026-16458 — Timing side-channel in RSA PKCS#1 v1.5 decryption in ocrypto
- CVE-2026-16459 — Timing side-channel in RSA PKCS#1 v1.5 decryption in Oberon PSA Crypto
- CVE-2026-48386 — ColdFusion | Use of a Broken or Risky Cryptographic Algorithm (CWE-327)
- CVE-2026-66407 — DEEBOT PRO M1 and DEEBOT PRO K1VAC improperly implement authentication in WebSocket communication. The WebSocket privat
- CVE-2026-8470 — Langflow is affected by weaknesses in secret handling and sensitive configuration access
- CVE-2026-56609 — HCL iControl is affected by multiple security vulnerabilities(CVE-2026-56608 and CVE-2026-56609).
- CVE-2026-67336 — better-auth before 1.6.11 Insecure Cryptographic Defaults via oidcProvider
- CVE-2026-65309 — Storage of passwords in a reversible format
- CVE-2026-56582 — HCL MyCloud was affected with SSL/TLS Protocol Affected with LUCKY13 Vulnerability.
- CVE-2026-63761 — SurrealDB before 3.1.0 Algorithm Downgrade via ES512
- CVE-2026-56454 — HCL DFXAnalytics is affected by a Deprecated Protocol vulnerability due to the use of TLS 1.0 and TLS 1.1.
- CVE-2026-15605 — wandb Artifact Integrity Validation hashutil.py ArtifactManifestEntry.download weak hash