CWE-330
High likelihoodUse of Insufficiently Random Values
The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.
381 vulnerabilities with CWE-330
CVE-2025-5136
LOW
Tmall Demo < 2025-05-05 - Insufficiently Random Values in Payment Identifier Handler
CVSS 3.7
CVE-2025-1953
LOW
vLLM AIBrix <0.2.0 - Insufficiently Random Values
CVSS 2.6
CVE-2025-22150
MEDIUM
Undici <5.28.5,6.21.1,7.2.3 - Info Disclosure
CVSS 6.8
CVE-2025-0218
MEDIUM
pgAgent < 4.2.3 - Predictable Temporary Directory Name Generation
CVSS 5.5
CVE-2024-51346
HIGH
Eufy Homebase 2 3.3.4.1h - Info Disclosure
CVSS 7.7
CVE-2024-48928
HIGH
Piwigo 14.x - Weak Secret Key Vulnerability
CVSS 7.5
CVE-2024-56089
HIGH
Technitium DNS Server < 13.2.2 - DNS Cache Poisoning via Birthday Attack
CVSS 7.5
CVE-2024-50684
MEDIUM
SunGrow iSolarCloud <V2.1.6.20241017 - Info Disclosure
CVSS 6.5
CVE-2024-10604
MEDIUM
Fuchsia < f16 - Use of Insufficiently Random Values in Network Protocol Header Fields
CVSS 5.3
CVE-2024-12432
HIGH
WPC Shop as a Customer for WooCommerce <1.2.8 - Privilege Escalation
CVSS 8.1
CVE-2024-52615
MEDIUM
Red Hat Enterprise Linux 10 - Use of Insufficiently Random Values in Avahi-daemon DNS Query Port Selection
CVSS 5.3
CVE-2024-10082
HIGH
CodeChecker <6.24.1 - Privilege Escalation
CVSS 8.7
CVE-2024-20331
MEDIUM
Cisco Adaptive Security Appliance Software - Unauthenticated Denial of Service via Session Authentication Handle
CVSS 6.8
CVE-2024-47188
HIGH
Suricata < 7.0.7 - Denial of Service via Predictable Hash Table Behavior
CVSS 7.5
CVE-2024-47187
HIGH
Suricata < 7.0.7 - Predictable Hash Table Behavior via Uninitialized Random Seed
CVSS 7.5
CVE-2024-7558
HIGH
Juju < 2.9.51 - Unauthenticated Predictable Authentication Secret via JUJU_CONTEXT_ID
CVSS 8.7
CVE-2024-41708
HIGH
AdaCore ada_web_services <20.0 - Privilege Escalation
CVSS 7.5
CVE-2024-6348
HIGH
Nissan Altima 2022 - Info Disclosure
CVSS 7.5
CVE-2024-42475
MEDIUM
CORDEA oauth < 0.11 - Insufficient Entropy in OAuth State Parameter
CVSS 6.5
CVE-2024-7659
LOW
projectsend <r1720 - Info Disclosure
CVSS 3.7
CVE-2024-42165
MEDIUM
FIWARE Keyrock <= 8.4 - Info Disclosure
CVSS 6.3
CVE-2024-42164
MEDIUM
FIWARE Keyrock <= 8.4 - Info Disclosure
CVSS 4.3
CVE-2024-21460
HIGH
Qualcomm FastConnect 6900 Firmware - Information Disclosure via ASLR Relocation
CVSS 7.1
CVE-2024-25943
HIGH
iDRAC9 <7.00.00.172-7.10.50.00 - RCE
CVSS 7.6
CVE-2024-5868
MEDIUM
WooCommerce - Social Login <2.6.2 - Auth Bypass
CVSS 6.5
Details
Vulnerabilities
381
Exploit Likelihood
High