Skip to main content

CWE archive

CWE-329 CVEs

Programmatic archive

13 CVEs tagged with CWE-3290 Critical, 1 High, 9 Medium, 3 Low, 0 Unrated.

CVE-2024-56141

Published Jul 7, 2026

Minosoft is an open-source, multi-version Minecraft Java Edition client written in Kotlin. Starting in commit f1ae30e2b046a490026a8413b075685deb795122, the CryptManager  encryptio…

CVSS 5.0 · Medium

CVE-2025-2814

Published Apr 13, 2025

Crypt::CBC versions between 1.21 and 3.05 for Perl may use the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions…

CVSS 4.0 · Medium

CVE-2022-46397

Published Mar 28, 2023

FP.io VPP (Vector Packet Processor) 22.10, 22.06, 22.02, 21.10, 21.06, 21.01, 20.09, 20.05, 20.01, 19.08, and 19.04 Generates a Predictable IV with CBC Mode.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-29054

Published Feb 16, 2023

A missing cryptographic steps vulnerability [CWE-325] in the functions that encrypt the DHCP and DNS keys in Fortinet FortiOS version 7.2.0, 7.0.0 through 7.0.5, 6.4.0 through 6.4…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2017-3226

Published Jul 24, 2018

Das U-Boot is a device bootloader that can read its configuration from an AES encrypted file. Devices that make use of Das U-Boot's AES-CBC encryption feature using environment en…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-3225

Published Jul 24, 2018

Das U-Boot is a device bootloader that can read its configuration from an AES encrypted file. For devices utilizing this environment encryption mode, U-Boot's use of a zero initia…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-13 of 13 CVEsPage 1 of 1