A vulnerability identified as problematic has been detected in JuneAndGreen sm-crypto up to 0.3.x. This affects an unknown function of the component SM2 Signed Message Handler. This manipulation causes improper verification of cryptographic signature.

This vulnerability is registered as CVE-2026-23965. Remote exploitation of the attack is possible. No exploit is available.

You should upgrade the affected component.