Loading
The _Rsa15 class in the RSA 1.5 algorithm implementation in jwa.py in jwcrypto before 0.3.2 lacks the Random Filling protection mechanism, which makes it easier for remote attackers to obtain cleartext data via a Million Message Attack (MMA).
Cite this page
CVE-2016-6298. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2016-6298
Use CWE-200, Latchset vendor hub and Jwcrypto product page to widen CVE-2016-6298 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-28102, CVE-2026-39373 and CVE-2023-6681 for nearby disclosures in the same product family.