In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Chosen Cyphertext Attack vulnerabilities in an interactive lesson.
Start learningThere is no fix version for aescrypt
.
aescrypt
is Simple AES encryption / decryption for Ruby.
Affected versions of the package are vulnerable to Chosen Cyphertext Attack. Is uses an unauthenticated encryption mode (CBC) which is vulnerable to chosen ciphertext attacks, allowing active attackers to completely recover message plaintexts. It also allows attackers to make undetectable alterations to the plaintext.