PHP Elliptic Curve Cryptography library
mdanter/ecc has critical vulnerabilities — do not use
Update to >= 2.0.1 to fix known vulnerabilities
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| critical | GHSA-346h-749j-r28w | PHPECC vulnerable to multiple cryptographic side-channel attacks | — |
| medium | CVE-2024-33851 | mdanter/ecc affected by timing vulnerability in cryptographic side-channels | 2.0.1 |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/composer/mdanter/eccLast updated · 2021-01-16T19:42:14+00:00