Description
The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.
Remediation
References
Related Vulnerabilities
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-17571)
MySQL CVE-2023-22114 Vulnerability (CVE-2023-22114)
WordPress Plugin One Click SSL Cross-Site Request Forgery (1.4.6)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-5270)
Liferay Portal Insertion of Sensitive Information Into Sent Data Vulnerability (CVE-2025-43768)