NA

CVE-2020-36732

Published: 12/06/2023 Updated: 06/07/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The crypto-js package prior to 3.2.1 for Node.js generates random numbers by concatenating the string "0." with an integer, which makes the output more predictable than necessary.

Vulnerable Product Search on Vulmon Subscribe to Product

crypto-js project crypto-js