CVE-2015-9435
9.8CRITICALThe oauth2-provider plugin before 3.1.5 for WordPress has incorrect generation of random numbers.
Published: 9/26/2019Updated: 11/21/2024
Description
The oauth2-provider plugin before 3.1.5 for WordPress has incorrect generation of random numbers.
AI AnalysisPowered by AI
Affected Products
dash10oauth_server
References
- https://security.dxw.com/advisories/the-oauth2-complete-plugin-for-wordpress-uses-a-pseudorandom-number-generator-which-is-non-cryptographically-secure/Third Party Advisory
- https://wordpress.org/plugins/oauth2-provider/#developersProductVendor Advisory
- https://security.dxw.com/advisories/the-oauth2-complete-plugin-for-wordpress-uses-a-pseudorandom-number-generator-which-is-non-cryptographically-secure/Third Party Advisory
- https://wordpress.org/plugins/oauth2-provider/#developersProductVendor Advisory