CWE-780: Use of RSA Algorithm without OAEP
The product uses the RSA algorithm but does not incorporate Optimal Asymmetric Encryption Padding (OAEP), which might weaken the encryption.
3 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-51456 — IBM Robotic Process Automation information disclosure
- CVE-2025-9071 — Insecure RSA-OAEP implementation with all-zero seed for padding in Oberon PSA Crypto
Recently published
- CVE-2025-9071 — Insecure RSA-OAEP implementation with all-zero seed for padding in Oberon PSA Crypto
- CVE-2024-51456 — IBM Robotic Process Automation information disclosure