OASIS Open's vulnerability footprint centers on its digital signature services specification and related standards, representing a narrowly scoped organizational standard-setting role rather than a broadly deployed software product. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Oasis Open over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-13101HIGH In OASIS Digital Signature Services (DSS) 1.0, an attacker can control the validation outcome (i.e., trigger either a valid or invalid outcome for a valid or invalid signature) via | Aug 24, 2020 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Oasis Open.
Media articles that mention a CVE ID that affects a product developed by Oasis Open — matched by CVE ID, not by vendor name.