CWE-330— Use of Insufficiently Random Values
The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.— MITRE CWE catalog
412 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-330page 7 of 9
- CVE-2019-11840MEDIUMCVSS 5.9EG 5.92019-05-09
An issue was discovered in the supplementary Go cryptography library, golang.org/x/crypto, before v0.0.0-20190320223903-b7391e95e576. A flaw was found in the amd64 implementation of the golang.org/x/crypto/salsa20 and golang.org/x/crypto/s…
- CVE-2019-11690MEDIUMCVSS 5.9EG 5.92019-05-03
gen_rand_uuid in lib/uuid.c in Das U-Boot v2014.04 through v2019.04 lacks an srand call, which allows attackers to determine UUID values in scenarios where CONFIG_RANDOM_UUID is enabled, and Das U-Boot is relied upon for UUID values of a G…
- CVE-2018-11045MEDIUMCVSS 5.9EG 5.92018-07-11
Pivotal Operations Manager, versions 2.1 prior to 2.1.6 and 2.0 prior to 2.0.15 and 1.12 prior to 1.12.22, contains a static Linux Random Number Generator (LRNG) seed file embedded in the appliance image. An attacker with knowledge of the …
- CVE-2018-1108MEDIUMCVSS 5.9EG 5.92018-05-21
kernel drivers before version 4.17-rc1 are vulnerable to a weakness in the Linux kernel's implementation of random seed data. Programs, early in the boot sequence, could use the data allocated for the seed before it was sufficiently genera…
- CVE-2021-4248MEDIUMCVSS 5.6EG 5.62022-12-18
A vulnerability was found in kapetan dns up to 6.1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file DNS/Protocol/Request.cs. The manipulation leads to insufficient entropy in prng. The a…
- CVE-2026-23999MEDIUMCVSS 5.5EG 5.52026-02-26
Fleet is open source device management software. In versions prior to 4.80.1, Fleet generated device lock and wipe PINs using a predictable algorithm based solely on the current Unix timestamp. Because no secret key or additional entropy w…
- CVE-2026-21444MEDIUMCVSS 5.5EG 5.52026-01-02
libtpms, a library that provides software emulation of a Trusted Platform Module, has a flaw in versions 0.10.0 and 0.10.1. The commonly used integration of libtpms with OpenSSL 3.x contained a vulnerability related to the returned IV (ini…
- CVE-2025-13353MEDIUMCVSS 5.5EG 5.52025-12-02
In gokey versions <0.2.0, a flaw in the seed decryption logic resulted in passwords incorrectly being derived solely from the initial vector and the AES-GCM authentication tag of the key seed. This issue has been fixed in gokey versio…
- CVE-2025-0218MEDIUMCVSS 5.5EG 5.52025-01-07
When batch jobs are executed by pgAgent, a script is created in a temporary directory and then executed. In versions of pgAgent prior to 4.2.3, an insufficiently seeded random number generator is used when generating the directory name, le…
- CVE-2023-32831MEDIUMCVSS 5.5EG 5.52024-01-02
In wlan driver, there is a possible PIN crack due to use of insufficiently random values. This could lead to local information disclosure with no execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR…
- CVE-2023-24478MEDIUMCVSS 5.5EG 5.52023-08-15
Use of insufficiently random values for some Intel Agilex(R) software included as part of Intel(R) Quartus(R) Prime Pro Edition for linux before version 22.4 may allow an authenticated user to potentially enable information disclosure via …
- CVE-2021-26407MEDIUMCVSS 5.5EG 5.52023-01-11
A randomly generated Initialization Vector (IV) may lead to a collision of IVs with the same key potentially resulting in information disclosure.
- CVE-2022-31008MEDIUMCVSS 5.5EG 5.52022-10-06
RabbitMQ is a multi-protocol messaging and streaming broker. In affected versions the shovel and federation plugins perform URI obfuscation in their worker (link) state. The encryption key used to encrypt the URI was seeded with a predicta…
- CVE-2022-1615MEDIUMCVSS 5.5EG 5.52022-09-01
In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.
- CVE-2021-41061MEDIUMCVSS 5.5EG 5.52021-09-15
In RIOT-OS 2021.01, nonce reuse in 802.15.4 encryption in the ieee820154_security component allows attackers to break encryption by triggering reboots.
- CVE-2021-0417MEDIUMCVSS 5.5EG 5.52021-08-18
In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Pat…
- CVE-2021-25444MEDIUMCVSS 5.5EG 5.52021-08-05
An IV reuse vulnerability in keymaster prior to SMR AUG-2021 Release 1 allows decryption of custom keyblob with privileged process.
- CVE-2021-23020MEDIUMCVSS 5.5EG 5.52021-06-01
The NAAS 3.x before 3.10.0 API keys were generated using an insecure pseudo-random string and hashing algorithm which could lead to predictable keys.
- CVE-2020-10729MEDIUMCVSS 5.5EG 5.52021-05-27
A flaw was found in the use of insufficiently random values in Ansible. Two random password lookups of the same length generate the equal value as the template caching action for the same file since no re-evaluation happens. The highest th…
- CVE-2021-3446MEDIUMCVSS 5.5EG 5.52021-03-25
A flaw was found in libtpms in versions before 0.8.2. The commonly used integration of libtpms with OpenSSL contained a vulnerability related to the returned IV (initialization vector) when certain symmetric ciphers were used. Instead of r…
- CVE-2021-0375MEDIUMCVSS 5.5EG 5.52021-03-10
In onPackageModified of VoiceInteractionManagerService.java, there is a possible change of default applications due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges need…
- CVE-2020-10870MEDIUMCVSS 5.5EG 5.52020-03-23
Zim through 0.72.1 creates temporary directories with predictable names. A malicious user could predict and create Zim's temporary directories and prevent other users from being able to start Zim, resulting in a denial of service.
- CVE-2020-8631MEDIUMCVSS 5.5EG 5.52020-02-05
cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.
- CVE-2019-6632MEDIUMCVSS 5.5EG 5.52019-07-03
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, under certain circumstances, attackers can decrypt configuration items that are encrypted because the vCMP configuration unit key is generated with insufficien…
- CVE-2026-17274MEDIUMCVSS 5.4EG 5.42026-09-04
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to predictable server seeds.
- CVE-2021-37186MEDIUMCVSS 5.4EG 5.42021-09-14
A vulnerability has been identified in LOGO! CMR2020 (All versions < V2.2), LOGO! CMR2040 (All versions < V2.2), SIMATIC RTU3010C (All versions < V4.0.9), SIMATIC RTU3030C (All versions < V4.0.9), SIMATIC RTU3031C (All versions < V4.0.9), …
- CVE-2021-28674MEDIUMCVSS 5.4EG 5.42021-07-30
The node management page in SolarWinds Orion Platform before 2020.2.5 HF1 allows an attacker to create or delete a node (outside of the attacker's perimeter) via an account with write permissions. This occurs because node IDs are predictab…
- CVE-2026-18531MEDIUMCVSS 5.3EG 5.32026-08-05
IBM Maximo Application Suite 9.2, 9.1, and 9.0 could allow a remote attacker to tamper with session data due to the use of a weak HMAC session signing secret.
- CVE-2026-47703MEDIUMCVSS 5.3EG 5.32026-06-04
AdGuard Home is a network-wide software for blocking ads and tracking. Prior to 0.107.75, AdGuard Home's client-triggered DoQ forwarding path to a udp:// upstream reduced backend UDP DNS state by producing dns_id=0 or txid=0 and exposed a …
- CVE-2026-41207MEDIUMCVSS 5.3EG 5.32026-05-26
The netty incubator codec.bhttp is a java language binary http parser. Prior to version 0.0.21.Final, HKDF_expand returns non-NULL on failure. The byte[] is filled with zeros and has no way to distinguish success from failure. Since this o…
- CVE-2025-11707MEDIUMCVSS 5.3EG 5.32025-12-13
The Login Lockdown & Protection plugin for WordPress is vulnerable to IP Block Bypass in all versions up to, and including, 2.14. This is due to $unblock_key key being insufficiently random allowing unauthenticated users, with access to an…
- CVE-2025-12787MEDIUMCVSS 5.3EG 5.32025-11-11
The Hydra Booking — Appointment Scheduling & Booking Calendar plugin for WordPress is vulnerable to unauthorized booking cancellation in all versions up to, and including, 1.1.27. This is due to the plugin's "tfhb_meeting_form_submit_cal…
- CVE-2025-10745MEDIUMCVSS 5.3EG 5.32025-09-26
The Banhammer – Monitor Site Traffic, Block Bad Users and Bots plugin for WordPress is vulnerable to Blocking Bypass in all versions up to, and including, 3.4.8. This is due to a site-wide “secret key” being deterministically generat…
- CVE-2024-10604MEDIUMCVSS 5.3EG 5.32025-01-30
Vulnerabilities in the algorithms used by Fuchsia to populate network protocol header fields, specifically the TCP ISN, TCP timestamp, TCP and UDP source ports, and IPv4/IPv6 fragment ID allow for these values to be guessed under circumsta…
- CVE-2024-52615MEDIUMCVSS 5.3EG 5.32024-11-21
A flaw was found in Avahi-daemon, which relies on fixed source ports for wide-area DNS queries. This issue simplifies attacks where malicious DNS responses are injected.
- CVE-2024-28013MEDIUMCVSS 5.3EG 5.32024-03-28
Use of Insufficiently Random Values vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP…
- CVE-2024-23688MEDIUMCVSS 5.3EG 5.32024-01-19
Consensys Discovery versions less than 0.4.5 uses the same AES/GCM nonce for the entire session. which should ideally be unique for every message. The node's private key isn't compromised, only the session key generated for specific peer c…
- CVE-2020-36732MEDIUMCVSS 5.3EG 5.32023-06-12
The crypto-js package before 3.2.1 for Node.js generates random numbers by concatenating the string "0." with an integer, which makes the output more predictable than necessary.
- CVE-2023-22912MEDIUMCVSS 5.3EG 5.32023-01-20
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. CheckUser TokenManager insecurely uses AES-CTR encryption with a repeated (aka re-used) nonce, allowing an adversary to decr…
- CVE-2022-20941MEDIUMCVSS 5.3EG 5.32022-11-15
A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to access sensitive information. This vulnerability is due to missing authorizatio…
- CVE-2022-36022MEDIUMCVSS 5.3EG 5.32022-11-10
Deeplearning4J is a suite of tools for deploying and training deep learning models using the JVM. Packages org.deeplearning4j:dl4j-examples and org.deeplearning4j:platform-tests through version 1.0.0-M2.1 may use some unclaimed S3 buckets …
- CVE-2022-33707MEDIUMCVSS 5.3EG 5.32022-07-12
Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.
- CVE-2022-22700MEDIUMCVSS 5.3EG 5.32022-03-03
CyberArk Identity versions up to and including 22.1 in the 'StartAuthentication' resource, exposes the response header 'X-CFY-TX-TM'. In certain configurations, that response header contains different, predictable value ranges which can be…
- CVE-2021-3692MEDIUMCVSS 5.3EG 5.32021-08-10
yii2 is vulnerable to Use of Predictable Algorithm in Random Number Generator
- CVE-2021-26098MEDIUMCVSS 5.3EG 5.32021-08-04
An instance of small space of random values in the RPC API of FortiSandbox before 4.0.0 may allow an attacker in possession of a few information pieces about the state of the device to possibly predict valid session IDs.
- CVE-2021-27393MEDIUMCVSS 5.3EG 5.32021-04-22
A vulnerability has been identified in Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions < V2013.08), Nucleus Source Code (Versions including affected DNS modules). The DNS client does not properly randomize UDP port numbers …
- CVE-2021-25677MEDIUMCVSS 5.3EG 5.32021-04-22
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (A…
- CVE-2020-17470MEDIUMCVSS 5.3EG 5.32020-12-11
An issue was discovered in FNET through 4.6.4. The code that initializes the DNS client interface structure does not set sufficiently random transaction IDs (they are always set to 1 in _fnet_dns_poll in fnet_dns.c). This significantly sim…
- CVE-2020-27556MEDIUMCVSS 5.3EG 5.32020-11-17
A predictable device ID in BASETech GE-131 BT-1837836 firmware 20180921 allows unauthenticated remote attackers to connect to the device.
- CVE-2020-4188MEDIUMCVSS 5.3EG 5.32020-06-23
IBM Security Guardium 10.6 and 11.1 may use insufficiently random numbers or values in a security context that depends on unpredictable numbers. IBM X-Force ID: 174807.
Map vulnerabilities like CWE-330 to your infrastructure
EchelonGraph correlates every CVE — across CWE-330 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →