PKSA-pr5h-1dpm-9x4k Security Advisory
-
[HIGH] xmlseclibs: Missing AES-GCM Authentication Tag Validation on Encrypted Nodes Allows for Unauthorized Decryption
PKSA-pr5h-1dpm-9x4k CVE-2026-32313 GHSA-4v26-v6cg-g6f9
Affected package: robrichards/xmlseclibs
Affected version: <3.1.5
Reported by:
GitHub