6.7 Medium
AI Score
Confidence
High
0.0004 Low
EPSS
Percentile
9.2%
The jose4j component before 0.9.4 for Java allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
bitbucket.org/b_c/jose4j/commits/1afaa1e174b3
bitbucket.org/b_c/jose4j/issues/212
github.com/advisories/GHSA-6qvw-249j-h44c
nvd.nist.gov/vuln/detail/CVE-2023-51775