Описание
Cryptographically Weak PRNG in generate-password
Affected versions of generate-password generate random values that are biased towards certain characters depending on the chosen character sets. This may result in guessable passwords.
Recommendation
Update to version 1.4.1 or later.
Пакеты
Наименование
generate-password
npm
Затронутые версииВерсия исправления
< 1.4.1
1.4.1
Дефекты
CWE-338
Дефекты
CWE-338