HIGH 8.7 NVD
CVE-2026-85393
node-forge through 1.4.0 fails to validate element count in nested DigestAlgorithm sequences during RSA PKCS#1 v1.5 signature verification. Attackers can embed
node-forge through 1.4.0 fails to validate element count in nested DigestAlgorithm sequences during RSA PKCS#1 v1.5 signature verification. Attackers can embed garbage bytes inside the DigestAlgorithm sequence to forge valid signatures for arbitrary messages using low-exponent RSA keys. This is an incomplete fix for CVE-2026-33894.
References
- https://github.com/advisories/GHSA-ppp5-5v6c-4jwp
- https://github.com/digitalbazaar/forge
- https://github.com/digitalbazaar/forge/blob/v1.4.0/lib/asn1.js
- https://github.com/digitalbazaar/forge/blob/v1.4.0/lib/rsa.js
- https://github.com/digitalbazaar/forge/issues/1149
This high severity vulnerability with a CVSS score of 8.7 was published on 2026-09-03 via NVD.
vulnfeed aggregates 7617 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.