Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4931
HistoryAug 21, 2017 - 2:48 p.m.

Insecure Random Number Generation

2017-08-2114:48:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

EPSS

0.001

Percentile

40.1%

simplesamlphp is vulnerable to insecure random number generation. The library does not use a cryptographically secure number generator, using the first 16 bits of the hash of the given secret instead.

EPSS

0.001

Percentile

40.1%