VYPR
Low severity3.7NVD Advisory· Published May 18, 2025· Updated Jun 17, 2026

CVE-2025-4894

CVE-2025-4894

Description

A vulnerability classified as problematic was found in calmkart Django-sso-server up to 057247929a94ffc358788a37ab99e391379a4d15. This vulnerability affects the function gen_rsa_keys of the file common/crypto.py. The manipulation leads to inadequate encryption strength. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.

Affected products

3
  • cpe:2.3:a:calmkart:django-sso-server:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:calmkart:django-sso-server:*:*:*:*:*:*:*:*
    • (no CPE)range: up to 057247929a94ffc358788a37ab99e391379a4d15
    • (no CPE)range: 057247929a94ffc358788a37ab99e391379a4d15

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.