captcha is vulnerable to Use of Insufficiently Random Values
42
Medium Risk
Affected versions of the captcha library may be vulnerable due to the use of insufficiently random values when adding noise to audio and image captchas. If these values are predictable or lack proper randomness, attackers could exploit this weakness to generate captchas that are easier to solve, potentially bypassing security mechanisms.
You are affected if you are using a version that falls within the vulnerable range.
captcha is vulnerable to Use of Insufficiently Random Values in versions 0.1 - 0.7.0.
Upgrade the captcha library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant