CWE-330

High likelihood

Use of Insufficiently Random Values

Parent: CWE-693 - Protection Mechanism Failure

The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.

364 vulnerabilities with CWE-330
CVE-2025-12787 MEDIUM
Hydra Booking - Appointment Scheduling & Booking Calendar <1.1.27 -...
CVSS 5.3
CVE-2025-6515 MEDIUM
oatpp-mcp - SSRF
CVSS 6.8
CVE-2025-10745 MEDIUM
Banhammer <3.4.8 - Auth Bypass
CVSS 5.3
CVE-2025-10671 LOW
youth-is-as-pale-as-poetry e-learning 1.0 - Info Disclosure
CVSS 3.7
CVE-2025-7783 CRITICAL
form-data <2.5.4, 3.0.0-3.0.3, 4.0.0-4.0.3 - HPP
CVE-2025-6931 LOW
D-Link DCS-6517/7517 <2.02.0 - Insufficient Entropy
CVSS 3.7
CVE-2025-43866 HIGH
vantage6 - Info Disclosure
CVSS 7.5
CVE-2025-49198 LOW
Media Server - Info Disclosure
CVSS 3.1
CVE-2025-4607 CRITICAL
PSW Front-end Login & Registration <1.12 - Privilege Escalation
CVSS 9.8
CVE-2025-5136 LOW
Tmall Demo - Info Disclosure
CVSS 3.7
CVE-2025-1953 LOW
vLLM AIBrix <0.2.0 - Insufficiently Random Values
CVSS 2.6
CVE-2025-22150 MEDIUM
Undici <5.28.5,6.21.1,7.2.3 - Info Disclosure
CVSS 6.8
CVE-2025-0218 MEDIUM
pgAgent <4.2.3 - DoS
CVSS 5.5
CVE-2024-51346 HIGH
Eufy Homebase 2 3.3.4.1h - Info Disclosure
CVSS 7.7
CVE-2024-48928 HIGH
Piwigo 14.x - Weak Secret Key Vulnerability
CVSS 7.5
CVE-2024-56089 HIGH
Technitium <13.2.2 - SSRF
CVSS 7.5
CVE-2024-50684 MEDIUM
SunGrow iSolarCloud <V2.1.6.20241017 - Info Disclosure
CVSS 6.5
CVE-2024-10604 MEDIUM
Fuchsia - Info Disclosure
CVSS 5.3
CVE-2024-12432 HIGH
WPC Shop as a Customer for WooCommerce <1.2.8 - Privilege Escalation
CVSS 8.1
CVE-2024-52615 MEDIUM
Avahi-daemon - Info Disclosure
CVSS 5.3
CVE-2024-10082 HIGH
CodeChecker <6.24.1 - Privilege Escalation
CVSS 8.7
CVE-2024-20331 MEDIUM
Cisco ASA/FTD - DoS
CVSS 6.8
CVE-2024-47188 HIGH
Suricata <7.0.7 - DoS
CVSS 7.5
CVE-2024-47187 HIGH
Suricata <7.0.7 - Info Disclosure
CVSS 7.5
CVE-2024-7558 HIGH
Juju - Info Disclosure
CVSS 8.7
Details
Vulnerabilities 364
Exploit Likelihood High