CVE-2026-4600 | jsrsasign up to 11.1.0 Domain src/dsa-2.0.js KJUR.crypto.DSA.setPublic signature verification (SNYK-JS-JSRSASIGN-15370940 / EUVD-2026-14375)
A vulnerability identified as problematic has been detected in jsrsasign up to 11.1.0. This vulnerability affects the function KJUR.crypto.DSA.setPublic of the file src/dsa-2.0.js of the component Domain Handler. The manipulation leads to improper verification of cryptographic signature.
This vulnerability is uniquely identified as CVE-2026-4600. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.