Vulnerabilities/

Raneto v0.17.0 employs weak password complexity requirements

Severity:
High

Description

Raneto v0.17.0 employs weak password complexity requirements, allowing attackers to crack user passwords via brute-force attacks. Version 0.17.1 contains security mitigations for this and other vulnerabilities.

Recommendation

Update the raneto package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
raneto
Anything's wrong? Let us know Last updated on January 31, 2023

This issue is available in SmartScanner Professional

See Pricing