CVE-2021-23566

4.0MEDIUM

The package nanoid from 3.0.0 and before 3.1.31 are vulnerable to Information Exposure via the valueOf() function which allows to reproduce the last id generated.

Veröffentlicht: 1/14/2022Aktualisiert: 11/3/2025

Beschreibung

The package nanoid from 3.0.0 and before 3.1.31 are vulnerable to Information Exposure via the valueOf() function which allows to reproduce the last id generated.

KI-AnalyseKI-gestützt

Betroffene Produkte

nanoid_projectnanoid

Referenzen