Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-8881

Version 3.0.7 of the Securly Chrome Extension uses EVP_BytesToKey key derivation with MD5 and a single iteration for AES encryption. MD5 has been broken since 2004 and a single iteration provides no key stretching.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 1.8%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2026-8881
  • Securly » Securly » Version: 3.0.7
    cpe:2.3:a:securly:securly:3.0.7


Contact Us

Shodan ® - All rights reserved