IronBarcode - Security CVE
Please see information below regarding IronBarcode:
- All Iron Software products are DigiCert certified
- IronBarcode does not use web services nor send data across the internet
- No COM or COM+ interfaces are exposed in the IronBarCode.dll
- The library is written in C# which protects implicitly from many common attack vectors
- As few entry points as possible to the API are exposed
- Strong naming and sophisticated tamper protection
- The library is regularly scanned with multiple anti-virus & anti-malware scanners, using highest security and heuristic search for potential threats
- Every line of code goes though at least two levels of human review by senior engineers to check for security vulnerabilities
- IronBarcode makes no known access to un-managed code
- IronBarcode makes use of following .NET dependencies - none of which are known to us as a security attack vector - particularly as every object is internalized to our library (static linking) with no public or external access https://ironsoftware.com/csharp/barcode/docs/license/credits/