CVE-2026-33894
published 2026-03-27CVE-2026-33894: Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature…
PriorityP343high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
0.34%
26.2th percentile
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in order to construct a signature that passes verification, enabling Bleichenbacher style forgery. This issue is similar to CVE-2022-24771, but adds bytes in an addition field within the ASN structure, rather than outside of it. Additionally, forge does not validate that signatures include a minimum of 8 bytes of padding as defined by the specification, providing attackers additional space to construct Bleichenbacher forgeries. Version 1.4.0 patches the issue.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| digitalbazaar | forge | < 1.4.0 | 1.4.0 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
ghsa7.5HIGH
osv7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
digitalbazaar forge 1.3.2 RSA-PKCS signature verification (Nessus ID 304081 / WID-SEC-2026-1407)
vuldb·2026-06-20·CVSS 7.5
CVE-2026-33894 [HIGH] digitalbazaar forge 1.3.2 RSA-PKCS signature verification (Nessus ID 304081 / WID-SEC-2026-1407)
A vulnerability, which was classified as problematic, was found in digitalbazaar forge 1.3.2. This impacts an unknown function of the component RSA-PKCS. Executing a manipulation can lead to improper verification of cryptographic signature.
The identification of this vulnerability is CVE-2026-33894. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.
OSV
CVE-2026-33894: Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript
osv·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894: Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in order to construct a signature that passes verification, enabling Bleichenbacher style forgery. This issue is similar to CVE-2022-24771, but adds bytes in an addition field within the ASN structure, rather than outside of it. Additionally, forge does not validate that signatures include a minimum of 8 bytes of padding as defined by the specification, providing attackers additional space to construct Bleichenbacher forgeries. Version 1.4.0 patches the issue.
OSV
Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
osv·2026-03-26·CVSS 7.5
CVE-2026-33894 [HIGH] Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
## Summary
RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in order to construct a signature that passes verification, enabling [Bleichenbacher style forgery](https://mailarchive.ietf.org/arch/msg/openpgp/5rnE9ZRN1AokBVj3VqblGlP63QE/). This issue is similar to [CVE-2022-24771](https://github.com/digitalbazaar/forge/security/advisories/GHSA-cfm4-qjh2-4765), but adds bytes in an addition field within the ASN structure, rather than outside of it.
Additionally, forge does not validate that signatures include a minimum of 8 bytes of padding as [defined by the specification](https://datatrack
GHSA
Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
ghsa·2026-03-26·CVSS 7.5
CVE-2026-33894 [HIGH] CWE-20 Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
Forge has signature forgery in RSA-PKCS due to ASN.1 extra field
## Summary
RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in order to construct a signature that passes verification, enabling [Bleichenbacher style forgery](https://mailarchive.ietf.org/arch/msg/openpgp/5rnE9ZRN1AokBVj3VqblGlP63QE/). This issue is similar to [CVE-2022-24771](https://github.com/digitalbazaar/forge/security/advisories/GHSA-cfm4-qjh2-4765), but adds bytes in an addition field within the ASN structure, rather than outside of it.
Additionally, forge does not validate that signatures include a minimum of 8 bytes of padding as [defined by the specification](https://datatrack
Red Hat
node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification
vendor_redhat·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CWE-347 node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification
node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in order to construct a signature that passes verification, enabling Bleichenbacher style forgery. This issue is similar to CVE-2022-24771, but adds bytes in an addition field within the ASN structure, rather than outside of it. Additionally, forge does not validate that signatures include a minimum of 8 bytes of padding as defined by the specification, providing attackers additional space to construct
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-33894 fbthrift: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [fedora-all]
bugzilla·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894 fbthrift: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [fedora-all]
CVE-2026-33894 fbthrift: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This project only ships JavaScript code as part of the website, the files are not shipped in the binary RPMs
Bugzilla
CVE-2026-33894 fbthrift: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [epel-all]
bugzilla·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894 fbthrift: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [epel-all]
CVE-2026-33894 fbthrift: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This project only ships JavaScript code as part of the website, the files are not shipped in the binary RPMs
Bugzilla
CVE-2026-33894 cachelib: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [epel-all]
bugzilla·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894 cachelib: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [epel-all]
CVE-2026-33894 cachelib: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This project only ships JavaScript code as part of the website, the files are not shipped in the binary RPMs
Bugzilla
CVE-2026-33894 cachelib: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [fedora-all]
bugzilla·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894 cachelib: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [fedora-all]
CVE-2026-33894 cachelib: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
This project only ships JavaScript code as part of the website, the files are not shipped in the binary RPMs
Bugzilla
CVE-2026-33894 node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification
bugzilla·2026-03-27·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894 node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification
CVE-2026-33894 node-forge: Forge: Signature Forgery via Weak RSASSA PKCS#1 v1.5 Verification
Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the ASN structure in order to construct a signature that passes verification, enabling Bleichenbacher style forgery. This issue is similar to CVE-2022-24771, but adds bytes in an addition field within the ASN structure, rather than outside of it. Additionally, forge does not validate that signatures include a minimum of 8 bytes of padding as defined by the specification, providing attackers additional spac
Hackernews
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
blogs_hackernews·2026-07-20·CVSS 5.9
CVE-2026-63030 [MEDIUM] ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
A single request should not be able to do this much. But this week, small inputs led to code execution, memory loss, stolen keys, and disabled security tools.
The paths were often simple: exposed systems, weak checks, old drivers, fake prompts, and public code used for malware delivery. Some bugs were new. Others were already being used before defenders had time to patch.
Here is the full recap of what broke, what was exploited, and what needs attention now.
## ⚡ Threat of the Week
New wp2shell WordPress Core Flaw Lets Unauthe
Wiz
CVE-2026-33894 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.5
CVE-2026-33894 [HIGH] CVE-2026-33894 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-33894 :
JavaScript vulnerability analysis and mitigation
node-forge
Source : NVD
## 7.5
Score
Published March 27, 2026
Severity HIGH
CNA Score 7.5
Affected Technologies
JavaScript
Grafana
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 5.6
Exploitation Probability (EPSS) N/A
Affected packages and libraries
node-forge
opensearch-dashboards-3
Sources
NVD
Chainguard Has Fix Added at: Apr 02, 2026
npm Severity HIGH Has Fix Added at: Mar 29, 2026
MinimOS Severity HIGH Has Fix Added at: Apr 05, 2026
Red Hat 8, 9, 10 Severity HIGH No Fix Added at: Mar 29, 2026
Wolfi Has Fix Added at: Apr 02, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your c
https://datatracker.ietf.org/doc/html/rfc2313#section-8https://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwphttps://github.com/digitalbazaar/forge/security/advisories/GHSA-ppp5-5v6c-4jwp
+ 45 more references
2026-03-27
Published