Vendor
Jahlives vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 34 vulnerabilities in Jahlives: 0 in the last 7 days and 34 in the last 90 days, 4 of them critical and 0 exploited in the wild. The most recent, CVE-2026-81721, was published on 27 August 2026. 1 technology has a page of its own.
- Last 7 days
- 0
- Last 90 days
- 34
- Critical, all time
- 4
- Exploited in the wild
- 0
Jahlives technologies
Latest Jahlives vulnerabilities
- CVE-2026-81721: openssl_encrypt KDF cost parameter validation bypasshighCVSS 7.5EPSS 0.6%
- CVE-2026-81720: openssl_encrypt memory exhaustion in identity file protection blockmediumCVSS 6.2EPSS 0.2%
- CVE-2026-81719: openssl_encrypt arbitrary code execution via plugin signature bypasshighCVSS 7.8EPSS 0.4%
- CVE-2026-81718: openssl_encrypt weak PBKDF2 parameters in keyfile encryptionhighCVSS 7.5EPSS 0.2%
- CVE-2026-81717: openssl_encrypt USB drive integrity bypass with fixed KDF saltlowCVSS 3.5EPSS 0.1%
- CVE-2026-81716: openssl-encrypt path traversal in PluginSandboxmediumCVSS 5.2EPSS 0.3%
- CVE-2026-81715: openssl-encrypt credential exposure in debug outputlowCVSS 3.3EPSS 0.3%
- CVE-2026-81714: openssl-encrypt cryptographic signature verification bypasshighCVSS 7EPSS 0.2%
- CVE-2026-81707: openssl_encrypt ANSI escape injection in identity emailcriticalCVSS 9.8EPSS 0.6%
- CVE-2026-81706: openssl_encrypt namespace collision in IdentityStore allowing key substitutionmediumCVSS 6.8EPSS 0.2%
- CVE-2026-81705: openssl-encrypt sensitive information in debug logshighCVSS 7.5EPSS 0.4%
- CVE-2026-81704: openssl_encrypt weak key derivation in D-Bus EncryptFile handlerhighCVSS 7.5EPSS 0.3%
- CVE-2026-81703: openssl_encrypt authentication bypass in post-quantum key validationmediumCVSS 5.5EPSS 0.2%
- CVE-2026-81702: openssl_encrypt key substitution in identity loadingcriticalCVSS 9.8EPSS 0.2%
- CVE-2026-81701: openssl_encrypt signature verification bypass via denylistcriticalCVSS 9.8EPSS 0.4%
- CVE-2026-81700: openssl_encrypt GPG signature verification bypass in gpg_runnercriticalCVSS 9.8EPSS 0.4%
- CVE-2026-81699: openssl_encrypt unbounded KDF cost denial of servicehighCVSS 7.5EPSS 0.5%
- CVE-2026-81698: openssl_encrypt shell injection in info commandhighCVSS 7.5EPSS 0.4%
- CVE-2026-81696: openssl_encrypt terminal injection in info commandlowCVSS 3.3EPSS 0.3%
- CVE-2026-81695: openssl_encrypt terminal injection in decrypt auto-detectionlowCVSS 3.3EPSS 0.3%
- CVE-2026-81694: openssl-encrypt output injection via unsanitized filenameslowCVSS 3.3EPSS 0.3%
- CVE-2026-81693: openssl_encrypt unbounded memory allocation in QR JSON parsinghighCVSS 7.5EPSS 0.5%
- CVE-2026-81691: openssl_encrypt unvalidated server URL in login and register_with_emailhighCVSS 7.5EPSS 0.3%
- CVE-2026-81690: openssl-encrypt symlink-following in verify-usbhighCVSS 7.3EPSS 0.7%
- CVE-2026-81689: openssl_encrypt weak password key derivation in pepper wraphighCVSS 7.5EPSS 0.3%
Most severe Jahlives vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-81707: openssl_encrypt ANSI escape injection in identity emailcriticalCVSS 9.8EPSS 0.6%
- CVE-2026-81701: openssl_encrypt signature verification bypass via denylistcriticalCVSS 9.8EPSS 0.4%
- CVE-2026-81700: openssl_encrypt GPG signature verification bypass in gpg_runnercriticalCVSS 9.8EPSS 0.4%
- CVE-2026-81702: openssl_encrypt key substitution in identity loadingcriticalCVSS 9.8EPSS 0.2%
- CVE-2026-81683: openssl-encrypt cleartext private key storage in SharedPreferenceshighCVSS 8.4EPSS 0.1%
- CVE-2026-81719: openssl_encrypt arbitrary code execution via plugin signature bypasshighCVSS 7.8EPSS 0.4%
- CVE-2026-81721: openssl_encrypt KDF cost parameter validation bypasshighCVSS 7.5EPSS 0.6%
- CVE-2026-81699: openssl_encrypt unbounded KDF cost denial of servicehighCVSS 7.5EPSS 0.5%
- CVE-2026-81693: openssl_encrypt unbounded memory allocation in QR JSON parsinghighCVSS 7.5EPSS 0.5%
- CVE-2026-81705: openssl-encrypt sensitive information in debug logshighCVSS 7.5EPSS 0.4%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 34 | 4 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/jahlives.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Jahlives vulnerabilities", https://junglewise.ai/threats/vendors/jahlives, 26 September 2026.