mirror of
https://github.com/openpgpjs/openpgpjs.git
synced 2025-06-13 09:46:38 +00:00

Parsing of such messages will fail, as the data in the header is not verified, and allowing it opens up the possibility of signature spoofing.