CWE-326

Inadequate Encryption Strength

Parent: CWE-693 - Protection Mechanism Failure

The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.

457 vulnerabilities with CWE-326
CVE-2025-41743 MEDIUM
Sprecher Automation - Info Disclosure
CVSS 4.0
CVE-2025-11935 HIGH
wolfssl 5.8.2-5.8.3 - Inadequate Encryption Strength via TLS 1.3 PSK Without PFS
CVSS 7.5
CVE-2025-12439 MEDIUM
Google Chrome < 142.0.7444.59 - Inadequate Encryption Strength in App-Bound Encryption
CVSS 5.5
CVE-2025-12478 CRITICAL
BLU-IC2 and BLU-IC4 Firmware < 1.20 - Inadequate Encryption Strength
CVSS 9.8
CVE-2025-55039 MEDIUM
Apache Spark <4.0.0-3.5.2-3.4.4 - Info Disclosure
CVSS 6.5
CVE-2025-55248 MEDIUM
.NET Framework - Inadequate Encryption Strength
CVSS 4.8
CVE-2025-39889 HIGH
Linux Kernel - Inadequate Encryption Key Size Validation in Bluetooth L2CAP
CVSS 8.1
CVE-2025-46409 HIGH
SS1 <16.0.0.10 - Info Disclosure
CVSS 7.5
CVE-2025-9513 LOW
Editso Fuso <1.0.4-beta.7 - Code Injection
CVSS 3.7
CVE-2025-9239 LOW
elunez eladmin <2.7 - Info Disclosure
CVSS 3.7
CVE-2025-45765 CRITICAL
ruby-jwt v3.0.0.beta1 - Info Disclosure
CVSS 9.1
CVE-2025-45764 LOW
jsrsasign v11.1.0 - Info Disclosure
CVSS 3.2
CVE-2025-45770 HIGH
jwt < 5.4.3 - Inadequate Encryption Strength
CVSS 7.0
CVE-2025-45769 MEDIUM
firebase/php-jwt < 6.11.0 - Inadequate Encryption Strength
CVSS 6.5
CVE-2025-36106 MEDIUM
IBM Cognos Analytics Mobile 1.1.0-1.1.22 - Inadequate Encryption Strength via AFNetworking Library
CVSS 6.5
CVE-2025-7789 LOW
Xuxueli xxl-job <3.1.1 - Password Hashing
CVSS 3.7
CVE-2025-7398 CRITICAL
Brocade ASCG < 3.3.0 - Inadequate Encryption Strength on Internal Ports
CVSS 9.1
CVE-2025-32874 HIGH
Kaseya Rapid Fire Tools Network Detective <2.0.16.0 - Info Disclosure
CVSS 7.5
CVE-2025-48823 MEDIUM
Windows Cryptographic Services - Info Disclosure
CVSS 5.9
CVE-2025-27460 HIGH
Endress MEAC300-FNADE4 Firmware - Missing Full Volume Encryption
CVSS 7.6
CVE-2025-48960 MEDIUM
Acronis Cyber Protect <39938 - Info Disclosure
CVSS 5.9
CVE-2025-43925 MEDIUM
Unicom Focal Point 7.6.1 - Inadequate Encryption Strength
CVSS 4.6
CVE-2025-4894 LOW
calmkart django-sso-server - Inadequate Encryption Strength in gen_rsa_keys Function
CVSS 3.7
CVE-2025-27524 MEDIUM
Hitachi JP1/IT Desktop Management 2 - Smart Device Manager <12-00-0...
CVSS 5.3
CVE-2025-22446 MEDIUM
Intel(R) Tiber Edge Platform - Privilege Escalation
CVSS 4.6
Details
Vulnerabilities 457