showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
The product uses a Pseudo-Random Number Generator (PRNG) in a security context, but the PRNG's algorithm is not cryptographically strong.
Link | Tags |
---|---|
https://huntr.dev/bounties/f9a9defd-29ea-4442-b692-ff1512813de4 | third party advisory |
https://github.com/star7th/showdoc/commit/4b962c1740311e0d46775023b6acba39ad60e370 | third party advisory patch |