CVE-2015-9435
9.8CRITICALThe oauth2-provider plugin before 3.1.5 for WordPress has incorrect generation of random numbers.
Publicado: 9/26/2019Atualizado: 11/21/2024
Descrição
The oauth2-provider plugin before 3.1.5 for WordPress has incorrect generation of random numbers.
Análise IADesenvolvido por IA
Produtos Afetados
dash10oauth_server
Referências
- https://security.dxw.com/advisories/the-oauth2-complete-plugin-for-wordpress-uses-a-pseudorandom-number-generator-which-is-non-cryptographically-secure/Third Party Advisory
- https://wordpress.org/plugins/oauth2-provider/#developersProductVendor Advisory
- https://security.dxw.com/advisories/the-oauth2-complete-plugin-for-wordpress-uses-a-pseudorandom-number-generator-which-is-non-cryptographically-secure/Third Party Advisory
- https://wordpress.org/plugins/oauth2-provider/#developersProductVendor Advisory