cvedb.io
CVE-2021-39182
HIGH · CVSS 7.5
EPSS exploitation probability: 0%
Published 2021-11-08T15:15:07.933 · Last modified 2026-06-17T04:03:15.910

Summary

EnroCrypt is a Python module for encryption and hashing. Prior to version 1.1.4, EnroCrypt used the MD5 hashing algorithm in the hashing file. Beginners who are unfamiliar with hashes can face problems as MD5 is considered an insecure hashing algorithm. The vulnerability is patched in v1.1.4 of the product. As a workaround, users can remove the `MD5` hashing function from the file `hashing.py`.

Affected products

enrocrypt_project — enrocrypt

Does this affect you?

Add your gear to cvedb and we'll alert you only when enrocrypt_project ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.