Pysrp Project maintains a cryptographic authentication library implementing the Secure Remote Password protocol, a niche but foundational component for password-authenticated key exchange in certain authentication frameworks. The observed vulnerability pattern centers on observable discrepancies that could weaken the protocol's security guarantees, a concern inherent to cryptographic implementations where subtle flaws in constant-time operations or side-channel resistance can undermine the design's protections. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pysrp Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-4286HIGH A vulnerability, which was classified as problematic, has been found in cocagne pysrp up to 1.0.16. This issue affects the function calculate_x of the file srp/_ctsrp.py. The manip | Dec 27, 2022 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pysrp Project.
Media articles that mention a CVE ID that affects a product developed by Pysrp Project — matched by CVE ID, not by vendor name.