None
EN
AI-assisted cybersecurity team discovers 12 OpenSSL vulnerabilities, claims humans are the limiting factor — some vulnerabilities have been around for decades
['Aaron Klotz', 'Contributing Writer', 'Li Ken-Un', 'Social Links Navigation']
Latest from Tom's Hardware
OpenSSL is a security standard that protects most of the internet, and cybersecurity researchers have recently discovered vulnerabilities in the standard that have been lying undetected for decades.
The Cybersecurity team at Aisle reported in a blog post that it found 12 CVEs in OpenSSL's codebase and has issued fixes for all 12 CVEs.
CVE-2025-15467 is a Stack Buffer Overflow vulnerability that can enable attackers to execute remote commands under certain conditions.
Aisle reported that at least some of the 12 vulnerabilities can be traced back all the way to 1998.
If you've ever been to a website with an HTTPS URL, that website is likely encrypted and protected with OpenSSL.