Lucene search

K
redhatcveRedhat.comRH:CVE-2018-1000620
HistoryJul 25, 2018 - 5:20 a.m.

CVE-2018-1000620

2018-07-2505:20:13
redhat.com
access.redhat.com
15

EPSS

0.002

Percentile

58.6%

A flaw was found in the nodejs-cryptiles library prior to version 4.1.2. Previous versions do not implement cryptographically secure randomness resulting in the randomDigits() function returning a pseudo-random data string biased to certain digits. An attacker could exploit this to guess the generated digits.

EPSS

0.002

Percentile

58.6%