Vulnerabilities > Jhipster > Jhipster > 2.27.0

DATE CVE VULNERABILITY TITLE RISK
2019-09-14 CVE-2019-16303 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Jhipster
A class generated by the Generator in JHipster before 6.3.0 and JHipster Kotlin through 1.1.0 produces code that uses an insecure source of randomness (apache.commons.lang3 RandomStringUtils).
network
low complexity
jhipster CWE-338
critical
9.8