VYPR

cloak

by Danielberkompas

CVEs (2)

  • CVE-2026-95105HigOct 6, 2026
    risk 0.46cvss —epss —

    Reliance on Obfuscation or Encryption of Security-Relevant Inputs without Integrity Checking vulnerability in danielberkompas cloak allows an attacker with write access to stored ciphertext to make it decrypt to a chosen value via bit flipping. Cloak.Ciphers.AES.CTR encrypts…

  • CVE-2026-94206MedOct 6, 2026
    risk 0.34cvss —epss —

    Use of Password Hash With Insufficient Computational Effort vulnerability in danielberkompas cloak_ecto and danielberkompas cloak allows an attacker who holds the hashed values and the configured secret to brute-force low-entropy plaintexts much faster than configured. The…