CVE-2021-29245
5.3MEDIUMBTCPay Server through 1.0.7.0 uses a weak method Next to produce pseudo-random values to generate a legacy API key.
Veröffentlicht: 5/5/2021Aktualisiert: 11/21/2024
Beschreibung
BTCPay Server through 1.0.7.0 uses a weak method Next to produce pseudo-random values to generate a legacy API key.
KI-AnalyseKI-gestützt
Betroffene Produkte
btcpayserverbtcpay_server
Referenzen
- https://blog.btcpayserver.org/vulnerability-disclosure-v1-0-7-0/Vendor Advisory
- https://github.com/btcpayserver/btcpayserver/releasesRelease NotesThird Party Advisory
- https://blog.btcpayserver.org/vulnerability-disclosure-v1-0-7-0/Vendor Advisory
- https://github.com/btcpayserver/btcpayserver/releasesRelease NotesThird Party Advisory