VYPR

Altcha

by Altcha Org

Source repositories

CVEs (2)

  • CVE-2025-65849CriDec 8, 2025
    risk 0.59cvss 9.1epss 0.00

    A cryptanalytic break in Altcha Proof-of-Work obfuscation mode version 0.8.0 and later allows for remote visitors to recover the Proof-of-Work nonce in constant time via mathematical deduction. NOTE: this is disputed by the Supplier because the product's objective is "to…

  • CVE-2025-68113MedDec 16, 2025
    risk 0.35cvss 6.5epss 0.00

    ALTCHA is privacy-first software for captcha and bot protection. A cryptographic semantic binding flaw in ALTCHA libraries allows challenge payload splicing, which may enable replay attacks. The HMAC signature does not unambiguously bind challenge parameters to the nonce,…