CVE-2026-16458EPSS p0.5%

CVE-2026-16458CVE-2026-16458

Description

Padding oracle attack vulnerability in Oberon microsystem AG’s ocrypto library in all versions since 3.0.0 and prior to 4.0.1 allows an attacker to recover plaintexts via timing measurements of RSA PKCS#1 v1.5 decrypt operations.

Scoring

EPSS0.09% probability of exploitation · percentile 0.5% · 2026-10-03T12:00:21Z
Last modified2026-08-26
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.