CWE-338: PRNG
The product uses a Pseudo-Random Number Generator (PRNG) in a security context, but the PRNG's algorithm is not cryptographically strong.
129 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-3495 — COMMGR - Insufficient Randomization Authentication Bypass
- CVE-2025-66565 — Fiber Utils UUIDv4 and UUID Silent Fallback to Predictable Values
- CVE-2025-54883 — Vision UI's security-kit Contains Cryptographic Weakness
- CVE-2025-66630 — Fiber insecurely fallsback in utils.UUIDv4() / utils.UUID() — predictable / zero‑UUID on crypto/rand failure
- CVE-2025-67504 — WBCE CMS has Weak Random Number Generator in Password Generation Function
- CVE-2025-15618 — Business::OnlinePayment::StoredTransaction versions through 0.01 for Perl uses an insecure secret key
- CVE-2026-56141 — In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 account
- CVE-2026-16235 — Crypt::Password versions through 0.28 for Perl generate insecure random values for salts
- CVE-2025-40926 — Plack::Middleware::Session::Simple versions before 0.05 for Perl generates session ids insecurely
- CVE-2026-25726 — Cloudreve is vulnerable to Account Takeover via Weak Cryptographic Token Generation (Insecure PRNG Seeding)
- CVE-2026-61500 — Rejetto HFS < 3.2.1 Session Forgery via Predictable Signing Key
- CVE-2026-42155 — Magento LTS: Weak API Session ID — Predictable MD5 of Time-Derived Inputs
- CVE-2026-9323 — Insecure PRNG and Information Exposure in urwid Web Display Backend
- CVE-2025-69217 — Coturn has unsafe nonce and relay port randomization due to weak random number generation.
- CVE-2026-64798 — Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension
- CVE-2026-9733 — Mojolicious::Plugin::Web::Auth::OAuth2 versions through 0.17 for Perl have an insecure default state parameter
- CVE-2026-7874 — Weak Cryptographic Key Derivation Exposed All Stored Credentials
- CVE-2026-73567 — sm-crypto: Predictable SM2 key generation in Node.js: default RNG uses Math.random + wall clock
- CVE-2026-5085 — Solstice::Session versions through 1440 for Perl generates session ids insecurely
- CVE-2026-47372 — Crypt::SaltedHash versions through 0.09 for Perl generate insecure random values for salts
Recently published
- CVE-2026-74887 — openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module
- CVE-2026-74874 — openssl_encrypt before 1.4.0 Weak PRNG Steganography Pixel Selection
- CVE-2026-73567 — sm-crypto: Predictable SM2 key generation in Node.js: default RNG uses Math.random + wall clock
- CVE-2026-18611 — Data-science-pipelines-operator: dspo: cryptographically weak secret generation (math/rand) for db and s3 credentials
- CVE-2026-71851 — crypto-js: Insufficient Entropy in Cryptographic Secret Generation via Vulnerable CryptoJS Dependency Chain
- CVE-2026-9205 — Langflow is affected by weaknesses in secret handling and sensitive configuration access
- CVE-2026-64798 — Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension
- CVE-2026-16615 — Librest: weak random number generation in pkce implementation
- CVE-2026-8169 — ExtremeXOS Debug-Mode Privilege Escalation via Weak PRNG
- CVE-2026-13577 — Dancer2 versions through 2.1.0 for Perl generate insecure session ids when required CSPRNG modules are unavailable
- CVE-2026-16235 — Crypt::Password versions through 0.28 for Perl generate insecure random values for salts
- CVE-2026-9323 — Insecure PRNG and Information Exposure in urwid Web Display Backend
- CVE-2026-13082 — GD::SecurityImage versions through 1.75 for Perl use rand to generate secrets
- CVE-2026-63089 — WireGuard Easy Weak Token Generation Information Disclosure via OTL Route
- CVE-2026-61500 — Rejetto HFS < 3.2.1 Session Forgery via Predictable Signing Key
- CVE-2026-14495 — DoLogin Security <= 4.3 - Unauthenticated Authentication Bypass via Insufficient Randomness via 'dologin' Parameter Weak PRNG Token
- CVE-2026-56016 — CGI::Session::ID::md5 versions before 4.49 for Perl generate predictable session ids from low-entropy sources
- CVE-2026-7830 — UltraVNC MS-Logon II uses 64-bit Diffie-Hellman and seeded libc rand() enabling credential interception
- CVE-2026-44040 — UltraVNC vncauth.c uses time-seeded libc rand() to generate VNC authentication challenge bytes
- CVE-2026-7874 — Weak Cryptographic Key Derivation Exposed All Stored Credentials