CVE-2017-16028

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/06/2018
Last modified:
09/10/2019

Description

react-native-meteor-oauth is a library for Oauth2 login to a Meteor server in React Native. The oauth Random Token is generated using a non-cryptographically strong RNG (Math.random()).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:randomatic_project:randomatic:*:*:*:*:*:node.js:*:* 3.0.0 (excluding)