QID 983386
QID 983386: Nodejs (npm) Security Update for randomatic (GHSA-6g33-f262-xjp4)
Affected versions of `randomatic` generate random values using a cryptographically weak psuedo-random number generator. This may result in predictable values instead of random values as intended.
## Recommendation
Update to version 3.0.0 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-6g33-f262-xjp4 for updates pertaining to this vulnerability.
Vendor References
- GHSA-6g33-f262-xjp4 -
github.com/advisories/GHSA-6g33-f262-xjp4
CVEs related to QID 983386
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6g33-f262-xjp4 | randomatic |
|