Skip to content
QuantumScanRelatório público de scan

Repositório

openssl/openssl

Escaneado em 16 de jul. de 2026

100

Risk score/ 100

Risco crítico

Resumo

Análise Heurística (IA indisponível) — 167 ocorrências detectadas: TLS 1.0 / 1.1, Oracle/relayer: long-lived TLS certificate (HNDL forward secrecy risk), AES-128, 3DES / TripleDES, MD5….

Crítico

37

Alto

110

Médio

19

Baixo

1

Principais findings

  • CríticoCWE-328SHA-1

    crypto/asn1/x_algor.c:143

    SHA-256 or SHA3-256

    Evidência
    /* allocate and set algorithm ID from EVP_MD, default SHA1 */
  • CríticoCWE-327TLS 1.0 / 1.1

    apps/s_server.c:177

    Evidência
    * This callback is designed for use in (D)TLSv1.2 (or below). It is
  • CríticoCWE-327TLS 1.0 / 1.1

    apps/s_server.c:179

    Evidência
    * is preferred to use a dedicated callback for TLSv1.3. For TLSv1.3 we
  • CríticoCWE-327RC2

    crypto/asn1/p5_pbev2.c:115

    Evidência
    /* If its RC2 then we'd better setup the key length */
  • CríticoCWE-327TLS 1.0 / 1.1

    apps/s_time.c:84

    Evidência
    { "cipher", OPT_CIPHER, 's', "TLSv1.2 and below cipher list to be used" },

+ 162 findings no relatório completo

Escaneie seu próprio repositório

Grátis. Resultados em ~90 segundos. CBOM + PDF DORA/NIS2 inclusos.

Começar scan grátis