Simplito maintains a focused cryptographic library, Elliptic-PHP, that provides elliptic-curve cryptography functionality for PHP applications. The durable signal in its disclosed vulnerabilities centers on observable discrepancies in cryptographic operations, reflecting the precision demands of elliptic-curve implementations. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simplito over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-10764HIGH In elliptic-php versions priot to 1.0.6, Timing attacks might be possible which can result in practical recovery of the long-term private key generated by the library under certain | Nov 18, 2019 | 7.4 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simplito.
Media articles that mention a CVE ID that affects a product developed by Simplito — matched by CVE ID, not by vendor name.