JavaScript library of crypto standards.
28%
Total Score
0
100
52
100
0
| Title | Versions | Severity |
|---|---|---|
CVE-2026-71851 New crypto-js is vulnerable to Insufficient Entropy in versions 0.0.0 - 4.0.0. | 0.0.0 - 4.0.0 | Critical |
AIKIDO-2026-554041 New crypto-js is vulnerable to Insecure Randomness in versions 3.1.2 - 3.1.8 and 3.3.0 - 3.3.0. | 3.1.2 - 3.1.83.3.0 - 3.3.0 | Critical |
CVE-2023-46233 crypto-js is vulnerable to Use of a Broken or Risky Cryptographic Algorithm in versions 0.0.0 - 4.2.0. | 0.0.0 - 4.2.0 | Critical |
CVE-2020-36732 crypto-js is vulnerable to Use of Insufficiently Random Values in versions 3.2.0 - 3.2.0. | 3.2.0 - 3.2.0 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant