MEDIUMVulnerability

CVE-2026-84971

Improper handling of an unexpected value size in the decryption path of a client-side encryption library can cause a failed internal check that terminates the process using the library. A party able to place a suitably formed encrypted value where an application will decrypt it, or able to control the responses the application receives, may cause that application to stop running.

Properties

severity
MEDIUM
score
6.5
cve_id
CVE-2026-84971
signal_observed_at
2026-09-17T21:31:51+00:00
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
published_at
2026-09-03T15:17:36.547
last_modified
2026-09-17T13:59:13.180

Related Entities (3)

HAS_WEAKNESS (1)

[Weakness]Reachable Assertion

DESCRIBED_BY (1)

[Source]NVD

AFFECTS_PRODUCT (1)

[Product]

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-84971 — Ninja Signal Threat Intelligence | Ninja Signal