CWE-1291

Public Key Re-Use for Signing both Debug and Production Code

Medium

Description

The same public key is used for signing both debug and production code.

Potential Impact

How to Fix

Implementation

Use different keys for Production and Debug.

Detection Methods

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-1291 vulnerabilities in your codebase.

Get Security Assessment