Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Otp-generator Project Subscribe
Filtered by product Otp-generator
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23451 1 Otp-generator Project 1 Otp-generator 2022-08-01 N/A 9.8 CRITICAL
The package otp-generator before 3.0.0 are vulnerable to Insecure Randomness due to insecure generation of random one-time passwords, which may allow a brute-force attack.