CVE-2021-23451
25.07.2022, 14:15
The package otp-generator before 3.0.0 are vulnerable to Insecure Randomness due to insecure generation of random one-time passwords, which may allow a brute-force attack.Enginsight
Vendor | Product | Version |
---|---|---|
otp-generator_project | otp-generator | 𝑥 < 3.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References