jsrsasign
opensource free pure JavaScript cryptographic library supports RSA/RSAPSS/ECDSA/DSA signing/validation, ASN.1, PKCS#1/5/8 private/public key, X.509 certificate, CRL, OCSP, CMS SignedData, TimeStamp and CAdES and JSON Web Signature(JWS)/Token(JWT)/Key(JWK)
Security Advisories for jsrsasign in npm
      
        High
      
    
      
  
          over 3 years ago
    
    JWS and JWT signature validation vulnerability with special characters
        
        npm
        
        jsrsasign
      
    
      
        Moderate
      
    
      
  
          over 3 years ago
    
    Signatures are mistakenly recognized to be valid in jsrsasign
        
        npm
        
        jsrsasign
      
    
      
        Critical
      
    
      
  
          over 4 years ago
    
    RSA signature validation vulnerability on maleable encoded message in jsrsasign
        
        npm
        
        jsrsasign
      
    
      
        Moderate
      
    
      
  
          over 5 years ago
    
    ECDSA signature vulnerability of Minerva timing attack in jsrsasign
        
        npm
        
        jsrsasign
      
    
      
        High
      
    
      
  
          over 5 years ago
    
    ECDSA signature validation vulnerability by accepting wrong ASN.1 encoding in jsrsasign
        
        npm
        
        jsrsasign
      
    
      
        Critical
      
    
      
  
          over 5 years ago
    
    RSA PKCS#1 decryption vulnerability with prepending zeros in jsrsasign
        
        npm
        
        jsrsasign
      
    
      
        Critical
      
    
      
  
          over 5 years ago
    
    RSA-PSS signature validation vulnerability by prepending zeros in jsrsasign
        
        npm
        
        jsrsasign