David I. Lehn
6 exploits
Active since Mar 2022
Forge has signature forgery in Ed25519 due to missing S > L check
CVSS 7.5
Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation)
CVSS 7.4
Digitalbazaar Forge < 1.3.0 - Signature Verification Bypass
CVSS 7.5
Digitalbazaar Forge < 1.3.0 - Signature Verification Bypass
CVSS 7.5
Digitalbazaar Forge < 1.3.0 - Signature Verification Bypass
CVSS 5.3
Forge <1.3.2 - Integer Overflow
CVSS 5.3